Windows IT Pro is the leading independent community for IT professionals deploying Microsoft Windows server and client applications and technologies.
  
  
  Advanced Search 


August 02, 2007

Message Classification

RSS
Subscribe to Windows IT Pro | See More Security Articles Here | Reprints | Or get the Monthly Online Pass—only $5.95 a month!

Computers are really good at some things, such as text-pattern matching. This has led to the rise of lots of applications based on pattern matching, from regular expression interpreters to keyword-based antispam filters. However, computers still aren't very good at the kind of linguistic and textual analysis required to reliably classify messages according to their content. "Message classification" usually refers to the activity of marking a message to indicate the nature of its contents. The markings used can be visible to the user or not, and they can be based on a standardized set of classifications (such as the US government's classification scheme for sensitive materials) or a custom set defined for a particular business or industry.

There are many automatic message classification systems on the market, most of which are optimized for particular environments. For example, Lockheed Martin built the RADIANT MERCURY system for automatically classifying messages for the US Navy; it's not available (or suited) for civilian use. These systems tend to be somewhat finicky, and many of them depend on having messages in a particular structure or format. In addition to these automated systems, several companies have developed client-side add-ons for Microsoft Outlook and other clients that let users select their own classification markings. (I helped develop one for Eudora, Outlook 97, and IBM Lotus Notes R4 back in the day.) The problem with client-side classification is that users might forget to, or decide not to, apply suitable classifications.

Despite these limitations, there's still a lot of demand for message classification tools. There are many cases where having message classifications applied is useful for business reasons. For example, having a method to mark messages "Attorney/Client Privileged" is important when determining which messages to include or exclude in a records discovery request. Likewise, it's useful to be able to mark messages that contain confidential or restricted information (although just marking them doesn't provide any real protection; for that you need something such as the Windows Rights Management Services toolset).

Exchange Server 2007 and Outlook 2007 provide two useful classification tools. Outlook 2007 can load a classification definition file (provided you enable a set of registry values on each client, as documented here) and display a classification menu that lets users apply classifications to individual messages as they see fit. The classification definition is a fairly simple XML file that must be generated on the Exchange 2007 server using the Export-OutlookClassification.ps1 script found in the Program Files\Microsoft\Exchange Server\Scripts directory. After you've generated the file, you can modify it and put it in a location where Outlook clients can access it. The process is a little rough in that you have to jump between the management shell on the Exchange server and Outlook on the clients to get it running; hopefully, Microsoft will provide better tools for this in a future release.

Client-side classification isn't enough by itself. With Exchange 2007, you can use transport rules to inspect and enforce message classifications. For example, you could create a transport rule that would NDR any message sent by members of the "Project X" group without a "Company Confidential" classification. Microsoft outlines the standard legal-oriented scenario in the Exchange 2007 documentation, explaining how to create a transport rule that will NDR messages sent to members of the "Legal" group if the messages aren't marked "A/C Privileged." There are lots of other interesting things you can do with transport rules, given that they can modify or redirect messages. For example, you could create a rule that would catch messages sent to external recipients that contain a certain word or phrase unless they had a particular classification.

Transport rules are terribly flexible, and next week I'll talk about a sticky situation that they can help resolve. I'm also throwing my Inbox open for your article and topic suggestions—if there's something you'd like to read about here, drop me a line!

End of Article



Reader Comments

You must be a registered user or online subscriber to comment on this article. Please log on before posting a comment. Are you a new visitor? Register now




Top Viewed ArticlesView all articles
WinInfo Short Takes: Week of November 9, 2009

An often irreverent look at some of the week's other news, including some more Windows 7 sales momentum, some Sophos stupidity, Microsoft's cloud computing self-loathing, more whining from the browser makers, Zoho's "Fake Office," and much, much more ...

Command Prompt Tricks

One reader shares his tip for setting up the command prompt to reflect a remote path. ...

Windows 7 Sets Sales Record

Microsoft CEO Steve Ballmer described Windows 7's first ten days of sales as "fantastic" while in Japan yesterday. ...


Related Articles Well, I Disclaim!

Using Exchange and Outlook's New Message-Classification Feature

Outlook 2007 Inbox Management

Meet Email-Retention Needs with Exchange 2007

Security Whitepapers Reducing the Costs and Risks of Branch Office Data Protection

Solving Desktop Management Challenges in Healthcare

Solving Desktop Management Challenges in Education

Related Events WinConnections and Microsoft® Exchange Connections

Check out our list of Free Email Newsletters!

Security eBooks Spam Fighting and Email Security for the 21st Century

Understanding and Leveraging Code Signing Technologies

A Guide to Windows Certification and Public Keys

Related Security Resources Introducing Left-Brain.com, the online IT bookstore
Looking for books, CDs, toolkits, eBooks? Prime your mind at Left-Brain.com

Discover Windows IT Pro eLearning Series!
Clear & detailed technical information and helpful how-to's, all in our trademark no-nonsense format


Windows IT Pro Home Register FAQ for Windows WinInfo News
Europe Edition About Us Contact Us/Customer Service Media Kit Affiliates / Licensing  
SQL Server Magazine Office & SharePoint Pro DevProConnections IT Job Hound
Left-Brain.com Technology Resource Directory asp.netPRO ITTV Windows SuperSite 
 
 Windows IT Pro is a Division of Penton Media Inc.
 © 2009 Penton Media, Inc. Terms of Use | Privacy Statement