How to to implement Rights Management Service in XenMobile Secure Mail

How to to implement Rights Management Service in XenMobile Secure Mail

book

Article ID: CTX227347

calendar_today

Updated On:

Description

This article will guide you with the steps to implement Rights Management Service in conjunction with the exchange server on Secure Mail Active Sync Client,

 

1.      Install and Configure Rights Management Service.

2.      Validate the Rights Management Service Configuration.

3.      Enable Rights Management Service in XenMobile Secure Mail.

4.      Validate the end user experience.


Instructions

 

Pre-Requisites

  1. Functional exchange environment integrated with Right Management Service.
  2. AD RMS Super Users group on Active Directory and Federated Delivery Mailbox user account added to the super user group on Exchange Server.
  3. Super Users group feature enabled using the AD RMS management tool on Active Directory.
  4. Fully functional XenMobile environment and Secure Mail (mdx app) published in XenMobile Serve.
 

Install and Configure Rights Management Service

 
         1.           Install the Rights Management Service role in the domain join server.
 
You can use below third party article as reference : https://mizitechinfo.wordpress.com/2013/09/07/simple-guide-installing-and-configuring-ad-rms-in-windows-server-2012-r2-part-1/
 
         2.           To configure the Rights Management template, launch Active Directory Rights Management Services.
 
User-added image
 
         3.           From the left hand pane navigate to “Rights Policy Templates” and under Actions click on “Create Distributed Rights Policy”.
 
User-added image
 
         4.           Under “Create Distributed Rights Policy Template” window click Add, in the “Add New Template” pop up window provide the “Name” of the Template and “Description” and click Add and the click Next.
 
User-added image
 
         5.           Add the required users.
 
User-added image
 
If you would like to specify Expiration Policy, Extended Policy, Revocation Policy click Next else click Finish.
 
For more details on configuration, you can refer to the third part article : https://mizitechinfo.wordpress.com/2013/09/11/simple-guide-configure-ad-rms-templates-part-2/
 
 

Validation of RMS Configuration

 
         1.           Launch Exchange Management Shell and run the command “Get-IRMConfiguration
 
User-added image
 

Make sure Internal Licensing is set to True.

         2.           Now run the command “Test-IRMConfiguration -Sender test@domain.com
 
User-added image
 
Make sure, OverAll Result is PASS.
 

Note : If the OverAll Result is Fail, then you will need to work with Microsoft to understand the reason for the failure and fix the same.

 
 
 

Enable Rights Management in Secure Mail

 
         1.           Login to XenMobile Server and navigate to Configure > Apps, Edit the Secure Mail’s mdx policies and turn “ON” the “Information Rights Management” flag and Save the configuration.

 User-added image
Note : Make sure you enable it for both iOS and Android.
 

End User Experience

 
         1.           

End user will download and Install the Secure Mail from the Citrix XenMobile Secure Store, once configured end user can leverage the RMS templates published by the administrator.

 

Here as an example end user will be leveraging the View only template to send an email.

 
User-added image
 
         2.           

User receives the protected email, where he can only view the email.

 
User-added image 
 
 




 

Issue/Introduction

Step by step guide to implement Rights Management Service in XenMobile Secure Mail