|
Secure Doc Hard Encryption Client - Licencing
| Secure Doc Enterprise Server - Licencing
|
Secure Doc Client - details |
| |
|
|
Key features: WinMagic SecureDoc supports |
 |
Standby and Hibernation Mode - Windows 2000, XP, 2003, Vista |
 |
encrypts NTFS, FAT, FAT32 file systems |
 |
supports Disk Utilities like Disk imaging Software (Ghost, DriveImage Rapid Restore), Boot Manager Software (BootMagic, SystemCommander), Defragmentation Tools, Anti-Virus-Tools |
 |
Boot from DOS, floppy or CD, when operating system is corrupt or infected with Malicous Code. |
 |
supports Tablet PCs (Fujitsu - siemens, compaq) |
 |
supports SCSI and RAID Controller |
 |
Multi-factor Authentication (2-factor or even 3-factor) |
 |
Additional folder of file-encryption with third party tools (like MS EFS) possible. |
 |
no decryption at installation of service packs and updates and configurable disk locks, data may be copied only to encrypted media. |
 |
configurable Disk-Lock, Data can only be copied on encrypted Media. |
 |
Support of USB-devices with hardware-based encryption: Kingston DataTraveler Secure, Verbatim Store'n'Go Corporate Secure, MXI Security Stealth/Outbacker MXP. |
|
 |
|
|
Because of Role and Identity based Key Management with Key files (key labeling) and their loaction (e.g. on SmartCards) makes distribution of encrypted files, disks and other media possible without having a "Master Password" Vulneralbility.
- unlimited number of users (key files) can be enrolled to computers or disks. - password rules - automatic lock of computer if token is removed (configurable) - "Single Sign On" with Windows - by replacement of the Windows GINA after Pre-Boot-Authentication the windows logon must not be done again.
|
Key Files and Encryption |
With SecureDoc encryption keys may be used for a particular encrypted hard disk only, a set of encrypted disks, a set of encrypted partitions or even a individual enrypted file.
These encryption keys are stored in Key-Files, you can think of them as a key-ring. But this Key-Files are vital for the security of the whole system, main consideration has to be on location and protection of such Key Files.
Such Key-Files can be stored on a hard disk, a removable media or direct on a smart card. The protection can be done on many ways from simple passwords ( encryption with passwords
) to cryptographic keys of a PKI-certificate on a smart card - of course the reached security level is different.
|
How Key Files Affect User Authentication |
|
token (token contains both certificate and key file) |
1. login to token itself, and choose key file 2. token’s certificate used to decrypt key file 3. key file’s key used to decrypt/encrypt data |
hard disk/removable media, protected by token (token contains certificate only) |
1. choose key file from list on hard drive 2. login to token 3. token’s certificate used to decrypt key file 4. key file’s key used to decrypt/encrypt data |
|
hard disk, protected by password |
1. choose key file from list on hard drive 2. enter password for key file 3. password used to decrypt key file 4. key file’s key used to decrypt/encrypt |
|
 |
 |
 |
 |
 |
|
Key files and encrypted volumes |
|
Supported Smart Cards & Token |
ActivCard and ActivKey: (not all modes are supported) - Cryptoflex 16k - ActivCard with new client SP software - ActivKey token - Cyberflex Access 32k - Cyberflex Access 64k
Aladdin USB eToken: - Aladdin Pro - Aladdin Pro 32 - Aladdin R2 - (not all modes are supported) - Aladdin eToken 64k
Axalto: - Axalto smart card - Axalto GSC-IS v 2.1 smart card
CRYPTOCard: - 32K JAVA
Safenet / Datakey /Rainbow: - Model 330
- available at Cryptoshop.com - ikey 4000 - 320 - GSA-1 PKI card issued by the US Department of State High Assurance Certificate Authority - IKey 1000 (not all modes supported) - IKey 2000 - IKey 2032 - IKey 3000
Eutron: - CryptoIdentity 5 USB Token
Gemalto: - Gemalto Classic TPC IS (GemSafeXpresso)
smart card
Giesecke & Devrient: - Starcos S 2.3
- available at Cryptoshop.com
IBM: - JCOP 20 - JCOP 41
JUJO: - JUJO hard key
Kobil - mIdentity
NTT Technologies: - NTT eLWISE smart card
Oberthur: - CosmopolIC v2.5
RSA: - RSA SecurID 800 Token
Schlumberger: - CyberFlex (not all modes are supported) - Cryptoflex - eGate
Siemens: - CardOS M4.01a
- available on Cryptoshop.com - CardOS V4.3b
- available on Cryptoshop.com
Spyrus: - Rosetta Smart Card (not all modes are supported) - Rosetta USB Token
Thales: - Thales TVPN Cards
support TPM 1.2.
|
Supported smart card reader |
02 Micro: - 02Micro pcmcia - 02Micro USB Reader internal (e.g. built in Dell Lattitude 620 and 820)
ActivCard: - ACTR-01 serial - ActivCard USB v2
Axalto: - Reflex v2 USB - Reflex 20 pcmcia
Gemalto: - GPR 400 pcmcia - GEM PC430 USB - GemPC Twin USB
- available at Cryptoshop.com
Infineer: - DT 3000 serial - DT 3500 pcmcia - DT 4000 pcmcia
OMNIKEY: - CardMan 2011 serial - CardMan 2020 USB - CardMan 3121 USB
- available at Cryptoshop.com - CardMan 4000 pcmcia - CardMan 4040 pcmcia
- available at Cryptoshop.com - CardMan 4321 ExpressCard54
- available at Cryptoshop.com
PRECISE: - Precise 250MC (with Safenet 330M - "Match on Card"-Karte)
Sony: - Sony Puppy
SCM: - SCR 201 pcmcia - SCR 241 pcmcia - SCR 331 DI USB - SCR 3310 USB
- available at Cryptoshop.com - SCR 331 USB
Thales: - Thales pcmcia - Thales TVPN-08
|
|
|
|
|
|
|
|
No responsibility is taken for the correctness of this information.
|