Encryption and Information security
has been the core area of Research for Shoghi Communications. Since Inception
Shoghi has been involved in Designing and Developing Mil-Grade and Crypto Validated
Communication Security Appliances for Government and Defense Information Protection.
Today Shoghi offers multiple Crypto solutions to its customers with total freedom
from Published algorithms and Key management schemes.
SCL-Veto is a hardware-software system for unauthorized protection, differentiation
of access to hardware resources and software integrity control.
The basic characteristics of SCL-Veto:
Internal
trusted operating system;
Algorithm
for bulk encryption of authentication information according
to the GOST;
Hardware–based
random numbers generator for creation of authentication
information;
Hardware–based
computer lock via RESET signal;
Hardware
– based lock for HDD,FDD,CD-ROM, “AncNet” network
adapters and other devices;
FAT12,
FAT16, FAT32, NTFS, Ext2 file systems support;
Touch
Memory support.
The main functions of SCL-Veto:
Users identification and
authentication;
Differentiation
of access to hardware resources;
Computer
lock in the case of unauthorized access attempt;
Sound
signals about device conditions and access events;
Events
logging;
Files
and system areas of hard disk integrity verification;
Time
control for BIOS loading and user authentication;
Possibility to integrate the SCL-Veto into other
security systems.
SCL-Veto has different modifications including:
One-user and multi-user
modifications;
For
use together with SCL-4/PCI encryption device;
For
use together with mobile rack;
For
use together with “AncNet” network adapters.
SCL
AncNet 10/100
Hardware-software
cryptographic complex “SCL AncNet” is designed for protected data transmitting
in networks and for unauthorized access protection. “SCL AncNet” includes network
encryption module “SCL AncNet” and subsystem of unauthorized access protection
on the base of hardware-software module “SCL Veto”.
Network encryption module allows encryption of information transmitted through
networks (including active and passive network hardware). Encryption of information
part of IP packet is hardware based. After encryption information is transferred
to channel.
The basic functions and characteristics
of “SCL AncNet”:
Receive
and send Ethernet II packets on TCP/IP v.4 protocol;
Integrity
control for transmitting data;
Data
protection method: automatically encryption of information
part of IP-packet;
Encryption
algorithm: GOST;
Encryption
speed: 9 Mbyte/sec;
Data
transmitting speed: 10/100 Mbit/sec;
Key
storage device: Touch Memory.
SCL-IDE
Hardware-software cryptographic complex “SCL-IDE” is designed for data protection
on a hard drive and for unauthorized access computer protection. “SCL-IDE” includes
hard drive encryption module “SCL-IDE” and subsystem of unauthorized access protection
on the base of hardware-software module “SCL-Veto”.
Hard drive encryption module allows encryption of information transferred between
IDE controller on a motherboard and a hard drive.
The
basic functions and characteristics of “SCL-IDE”:
Encryption of information transferred between IDE
controller on a motherboard
and a hard drive;
Data
encryption according to algorithm GOST;
Encryption
speed: 70 Mbit/sec;
Key
storage device: Touch Memory.
SCL-4/PCI
Hardware encryption board with original 32-bit crypto-processors. SCL-4/PCI uses
standard proprietary cryptographic algorithm with 256 bits key. It can be
equipped with Touch Memory for Users authentication and Key storage.
Maximum
encryption speed – 1.2 Mbyte/sec.
It has
to be supplied additional software: SCL-FE (Interface software for File encryption)
or/and SCL-HDE (Software for Hard Disk Encryption).
SCL
HDE-9
High speed encryption board.
SCL HDE-9 uses proprietary cryptographic algorithm with 256 bits key. It can
be equipped with Touch Memory for Users authentication and Key storage. Maximum
encryption speed – 10 Mbyte/sec.
It has
to be supplied additional software: SCL-FE (Interface software for File encryption)
or/and SCL-HDE (Software for Hard Disk Encryption)
Secure
Token
Secure
Token is a compact USB device for file encryption, key storage and user authentication.
It is compatible with Microsoft Crypto API, PC/SC, PKCS#11. Secure Token uses
proprietary cryptographic algorithm with 256-bit key.
The
hardware part characteristics:
8,
16, 32 or 128 Kb of non-volatile memory;
File system with unlimited files number and unlimited
enclosure level
of directories (according to ISO 7816);
APDU
ISO 7816 and TPDU 7816 commands support;
Symmetric encryption according to GOST: -
256-bit (32 bytes) key size; -
64-bit (8 bytes) encryption block size;
Random
number generation;
Safety
storing of keys for encryption and user data;