Domain Separation

Home / Technology / Deployment / Domain Separation

The Cord3 Unity Information Management (IM) domain is separated from your organization’s IT domain. IT administrators do not have access to protected data objects in the IM domain. IT administrators and cloud service providers are eliminated from the threat chain, significantly reducing the risk of insider attacks!

Once configured, Cord3 Unity manages everything in the IM domain as a DCS appliance. Cord3 Unity product components, such as DCS cluster nodes, are in the IM domain, while your information services (for example, chat, SharePoint, and email) are in your organization’s IT domain. When users request access to data, the request is directed through the DCS node (enforcement point), ensuring that unauthorized users (including IT personnel) cannot access protected data objects.

This image illustrates how information domain separation is implemented. In this example, chat requests are routed through DCS Node1, SharePoint requests through Node2, and email requests through Node3.