<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Application Protector C on</title><link>https://docs.protegrity.com/protectors/10.0/docs/ap/ap_c/</link><description>Recent content in Application Protector C on</description><generator>Hugo</generator><language>en</language><atom:link href="https://docs.protegrity.com/protectors/10.0/docs/ap/ap_c/index.xml" rel="self" type="application/rss+xml"/><item><title>Understanding the Architecture</title><link>https://docs.protegrity.com/protectors/10.0/docs/ap/ap_c/architecture_and_workflow/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://docs.protegrity.com/protectors/10.0/docs/ap/ap_c/architecture_and_workflow/</guid><description>&lt;p>This page describes the architecture, the individual components, and the workflow of the Protegrity Application Protector (AP) solution.&lt;/p>
&lt;h2 id="architecture-and-workflow">Architecture and Workflow&lt;/h2>
&lt;p>The following figure illustrates the deployment architecture of the Application Protector (AP).&lt;/p>
&lt;p>&lt;img src="https://docs.protegrity.com/protectors/10.0/docs/images/ap/ap_common_arch_apc.png" alt="Architecture and Workflow of Application Protector">&lt;/p>
&lt;p>The following table describes the components of the AP deployment architecture.&lt;/p>
&lt;table>
 &lt;thead>
 &lt;tr>
 &lt;th>Component&lt;/th>
 &lt;th>Description&lt;/th>
 &lt;/tr>
 &lt;/thead>
 &lt;tbody>
 &lt;tr>
 &lt;td>Customer Application&lt;/td>
 &lt;td>Built in supported programming languages and integrates with AP for data protection.&lt;/td>
 &lt;/tr>
 &lt;tr>
 &lt;td>Application Protector&lt;/td>
 &lt;td>Core protection engine that enforces security policies and performs data protection operations.&lt;/td>
 &lt;/tr>
 &lt;tr>
 &lt;td>Configuration File (config.ini)&lt;/td>
 &lt;td>Contains initialization parameters passed to AP during startup.&lt;/td>
 &lt;/tr>
 &lt;tr>
 &lt;td>Package Enforcement and Deployment&lt;/td>
 &lt;td>Downloads policy packages from the RP Agent and executes protection operations, such as, protect, unprotect, and reprotect.&lt;/td>
 &lt;/tr>
 &lt;tr>
 &lt;td>Log Forwarder&lt;/td>
 &lt;td>Collects logs from AP and forwards them to the Audit Store for centralized auditing.&lt;/td>
 &lt;/tr>
 &lt;tr>
 &lt;td>Resilient Package (RP) Agent&lt;/td>
 &lt;td>Standalone process that retrieves policy packages from ESA and shares them with AP processes using shared memory IPC.&lt;/td>
 &lt;/tr>
 &lt;/tbody>
&lt;/table>
&lt;p>The following steps describe the workflow of a sample AP deployment in the production environment.&lt;/p></description></item><item><title>System Requirements</title><link>https://docs.protegrity.com/protectors/10.0/docs/ap/ap_c/ap_hardware_reqs/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://docs.protegrity.com/protectors/10.0/docs/ap/ap_c/ap_hardware_reqs/</guid><description>&lt;p>The following table lists the minimum hardware configurations.&lt;/p>
&lt;table>
 &lt;thead>
 &lt;tr>
 &lt;th>Hardware Component&lt;/th>
 &lt;th>Configuration Details&lt;/th>
 &lt;/tr>
 &lt;/thead>
 &lt;tbody>
 &lt;tr>
 &lt;td>CPU&lt;/td>
 &lt;td>Depends on the application.&lt;/td>
 &lt;/tr>
 &lt;tr>
 &lt;td>Disk Space&lt;/td>
 &lt;td>Under 200 MB - including LogForwarder, RP Agent, and AP C.&lt;/td>
 &lt;/tr>
 &lt;tr>
 &lt;td>RAM&lt;/td>
 &lt;td>Memory usage depends on the AP flavor and application behavior.&lt;br>Refer to &lt;a href="https://docs.protegrity.com/protectors/10.0/docs/ap/ap_c/appendix/memory_usage_apc/">AP C&lt;/a>.&lt;/td>
 &lt;/tr>
 &lt;/tbody>
&lt;/table></description></item><item><title>Preparing the Environment</title><link>https://docs.protegrity.com/protectors/10.0/docs/ap/ap_c/prep_the_env/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://docs.protegrity.com/protectors/10.0/docs/ap/ap_c/prep_the_env/</guid><description>&lt;h2 id="preparing-the-environment-for-ap-c-installation">Preparing the Environment for AP C Installation&lt;/h2>
&lt;p>Before installing Protegrity Application Protector (AP) C on a Linux platform, ensure the following prerequisites are met:&lt;/p>
&lt;h3 id="prerequisites">Prerequisites&lt;/h3>
&lt;ul>
&lt;li>The Enterprise Security Administrator (ESA) is installed, configured, and running.&lt;/li>
&lt;li>The IP address or host name of the Load Balancer, Proxy, or ESA is noted.&lt;/li>
&lt;li>The Policy Management (PIM) is initialized on the ESA, creating cryptographic keys and the policy repository for data protection. &lt;br>
For more information about initializing the PIM, refer to &lt;a href="https://docs.protegrity.com/10.0/docs/installation/ig_working_with_esa_using_pm/">Initializing the Policy Management&lt;/a>.&lt;/li>
&lt;li>A trusted application is created and configured in the ESA for the application that will use AP C.
For more information, refer to &lt;a href="https://docs.protegrity.com/10.0/docs/pmg/pmg_components_of_policy/pmg_working_with_trusted_applications/">Creating a Trusted Application&lt;/a>.&lt;/li>
&lt;/ul></description></item><item><title>Installing the AP C Protector</title><link>https://docs.protegrity.com/protectors/10.0/docs/ap/ap_c/apc_installation/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://docs.protegrity.com/protectors/10.0/docs/ap/ap_c/apc_installation/</guid><description>&lt;h2 id="extracting-the-setup-scripts-and-package">Extracting the Setup Scripts and Package&lt;/h2>
&lt;p>To extract the setup scripts and package:&lt;/p>
&lt;ol>
&lt;li>Download the &lt;code>ApplicationProtector_Linux-ALL-64_x86-64_GCC-9.3.1_&amp;lt;version&amp;gt;.tgz&lt;/code> file to any location on the machine where you want to install the protector.&lt;/li>
&lt;li>Extract the AP C installation package using the following command. &lt;br>
&lt;div class="highlight">&lt;pre tabindex="0" style="background-color:#f8f8f8;-moz-tab-size:4;-o-tab-size:4;tab-size:4;">&lt;code class="language-fallback" data-lang="fallback">&lt;span style="display:flex;">&lt;span>tar –xvf ApplicationProtector_Linux-ALL-64_x86-64_GCC-9.3.1_&amp;lt;version&amp;gt;.tgz
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>The following setup files are extracted:
&lt;ul>
&lt;li>&lt;code>ApplicationProtector_Linux-ALL-64_x86-64_GCC-9.3.1_&amp;lt;version&amp;gt;.tgz&lt;/code>&lt;/li>
&lt;li>&lt;code>signatures/ApplicationProtector_Linux-ALL-64_x86-64_GCC-9.3.1_&amp;lt;version&amp;gt;.sig&lt;/code>&lt;/li>
&lt;/ul>
&lt;/li>
&lt;li>Verify the digital signature of the signed AP C build. &lt;br>
For more information about verifying the signed AP C build, refer to &lt;a href="https://docs.protegrity.com/protectors/10.0/docs/verification_of_signed_artifacts/">Verification of Signed Protector Build&lt;/a>.&lt;/li>
&lt;li>Extract the AP C installation package again using the following command. &lt;br>
&lt;div class="highlight">&lt;pre tabindex="0" style="background-color:#f8f8f8;-moz-tab-size:4;-o-tab-size:4;tab-size:4;">&lt;code class="language-fallback" data-lang="fallback">&lt;span style="display:flex;">&lt;span>tar –xvf ApplicationProtector_Linux-ALL-64_x86-64_GCC-9.3.1_&amp;lt;version&amp;gt;.tgz
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>The following setup files are extracted:
&lt;ul>
&lt;li>&lt;code>LogforwarderSetup_Linux_x64_&amp;lt;version&amp;gt;.sh&lt;/code>&lt;/li>
&lt;li>&lt;code>RPAgentSetup_Linux_x64_&amp;lt;version&amp;gt;.sh&lt;/code>&lt;/li>
&lt;li>&lt;code>XCDevSetup_Linux_x64_&amp;lt;version&amp;gt;.sh&lt;/code>&lt;/li>
&lt;li>&lt;code>XCSamplesSetup_Linux_x64_&amp;lt;version&amp;gt;.sh&lt;/code>&lt;/li>
&lt;/ul>
&lt;/li>
&lt;/ol>
&lt;h2 id="installing-log-forwarder-on-linux">Installing Log Forwarder on Linux&lt;/h2>
&lt;p>The steps to install the Log Forwarder on a Linux platform using the Interactive mode or through the Silent mode are described in this section.&lt;/p></description></item><item><title>Configuring the Protector</title><link>https://docs.protegrity.com/protectors/10.0/docs/ap/ap_c/config_the_protector/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://docs.protegrity.com/protectors/10.0/docs/ap/ap_c/config_the_protector/</guid><description>&lt;h2 id="configuring-ap-c-on-linux">Configuring AP C on Linux&lt;/h2>
&lt;p>To configure the AP C on the Linux platform:&lt;/p>
&lt;ol>
&lt;li>
&lt;p>Set the library path before running protect, unprotect or reprotect operations.&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" style="background-color:#f8f8f8;-moz-tab-size:4;-o-tab-size:4;tab-size:4;">&lt;code class="language-gdscript3" data-lang="gdscript3">&lt;span style="display:flex;">&lt;span>&lt;span style="color:#204a87;font-weight:bold">export&lt;/span> &lt;span style="color:#000">LD_LIBRARY_PATH&lt;/span>&lt;span style="color:#ce5c00;font-weight:bold">=/&lt;/span>&lt;span style="color:#000">opt&lt;/span>&lt;span style="color:#ce5c00;font-weight:bold">/&lt;/span>&lt;span style="color:#000">protegrity&lt;/span>&lt;span style="color:#ce5c00;font-weight:bold">/&lt;/span>&lt;span style="color:#000">sdk&lt;/span>&lt;span style="color:#ce5c00;font-weight:bold">/&lt;/span>&lt;span style="color:#000">c&lt;/span>&lt;span style="color:#ce5c00;font-weight:bold">/&lt;/span>&lt;span style="color:#000">bin&lt;/span>
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>This makes the &lt;code>xcpep.plm&lt;/code> file accessible to the Application Protector C SDK before your application initializes.&lt;/p>
&lt;/li>
&lt;li>
&lt;p>Ensure that the &lt;code>config.ini&lt;/code> file exists in this location before starting the application. AP C resolves the &lt;code>config.ini&lt;/code> file path relative to the library path:&lt;/p>
&lt;ul>
&lt;li>
&lt;p>AP C automatically looks for the configuration file at -&lt;/p></description></item><item><title>Using the AP C APIs</title><link>https://docs.protegrity.com/protectors/10.0/docs/ap/ap_c/using_apc_apis/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://docs.protegrity.com/protectors/10.0/docs/ap/ap_c/using_apc_apis/</guid><description>&lt;p>The process to use the AP C protect, unprotect, and reprotect methods are described on this page.&lt;/p>
&lt;p>It is assumed that the ESA is already available.&lt;/p>
&lt;p>The tasks can be divided in the following order.&lt;/p>
&lt;ol>
&lt;li>Create the data elements and data store in the Policy Management on the ESA Web UI.&lt;/li>
&lt;li>Create the member sources and roles.&lt;/li>
&lt;li>Configure the policy.&lt;/li>
&lt;li>Configure the trusted application.&lt;/li>
&lt;li>Add a trusted application to the data store.&lt;/li>
&lt;li>Install the AP C.&lt;/li>
&lt;li>Run the sample application.&lt;/li>
&lt;/ol>
&lt;h2 id="creating-a-data-element-and-data-store">Creating a data element and data store&lt;/h2>
&lt;p>Determine how the data needs to be protected either by using encryption or tokenization before running the application. Protection and unprotection methods are available for both.&lt;/p></description></item><item><title>Application Protector C APIs</title><link>https://docs.protegrity.com/protectors/10.0/docs/ap/ap_c/running_apc_apis/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://docs.protegrity.com/protectors/10.0/docs/ap/ap_c/running_apc_apis/</guid><description>&lt;p>The Protegrity Application Protector (AP) C provides APIs that integrate with the customer application to protect, unprotect, and reprotect sensitive data. A session must be created to run the AP C.&lt;/p>
&lt;blockquote>
&lt;p>&lt;strong>Note&lt;/strong>:&lt;/p>
&lt;ul>
&lt;li>The AP C APIs can be invoked by a valid &lt;strong>Policy User&lt;/strong>.&lt;/li>
&lt;li>The AP C supports only the &lt;strong>byte&lt;/strong> data type.&lt;/li>
&lt;/ul>&lt;/blockquote>
&lt;p>The following diagram represents the basic flow of a session.&lt;/p>
&lt;p>&lt;img src="https://docs.protegrity.com/protectors/10.0/docs/images/ap/ap_apis_flowchart.png" alt="AP C APIs">&lt;/p>
&lt;p>The following sections provide detailed information of the various structures and functions used by the Protegrity Application Protector C.&lt;/p></description></item></channel></rss>