Google Drive
Overview
Google Drive is a cloud storage system that allows file sharing and collaboration. Avanan adds security, privacy, and compliance to Google Drive by scanning files shared in Google Drive for malicious content and data loss prevention (DLP) and generates actionable events on malicious content.
How it Works
Avanan adds a layer of security that provides these security features for Google Drive:
-
Data Leak Prevention (DLP): Protecting uploaded files containing sensitive data
-
Anti-Malware: Scanning of files for malicious content
-
Remediation: Quarantine malicious files and files containing sensitive data.
Avanan scans files in the following scenarios:
-
A new file is created
-
A file is uploaded
-
A file is modified (edited)
-
A file or directory is shared with new members
Avanan starts scanning files from the time of installation. Files that existed prior to installation are not scanned retroactively.
Required Permissions
The cloud state for Google Drive used by Avanan is composed of the following entities:
-
Users
-
Groups and Memberships
-
Tokens
-
Apps
-
Files and Folders
-
Permissions
Once the cloud state is saved, Avanan starts monitoring the changes for each user. To track changes for each user in the cloud, Avanan uses the following channels:
-
Subscribe each user to Google Push Notifications for changes (https://developers.google.com/drive/v3/web/push).
-
Fallback to polling each user every minute if push notifications fails (https://developers.google.com/drive/v3/web/manage-changes)
-
Subscribe each user to Google Reports API to get its activities related to permissions, authorization to external apps, and tokens. ( https://developers.google.com/admin-sdk/reports/v1/get-start/getting-started)
Avanan uses the following resources for Google Drive from the APIs:
-
Files and Folders metadata (not include file contents)
-
Users and Groups metadata
-
Permissions
-
Changes (not including the content of files changed)
-
Channels
-
Tokens
-
Applications
Activating Google Drive
For details about the procedure to activate Google Drive, see Activating Google Drive.
Deactivating Google Drive
-
Click Security Settings > SaaS Applications.
-
Click Stop for Google Drive.
