SEC-TEL ENCRYPTION FEATURES
The technology is based around two internal tamper-proof SmartCards. One delivers standard GSM services, whilst the other, issued by a globally recognised Trust Centre, delivers powerful authentication and encryption using established and open protocols. This is known as the Crypto-Sim or Netkey card. These two technologies are merged to create a unique, unbreakable cipher key for each and every call – providing failsafe point-to-point authentication and unbreachable privacy from one handset to another.
The Encryption-system employed is a hybrid mechanism, widely used in high security products. The Sec-Tel phone achieves full bi-directional authentication with the secret keys held securely in, and never leaving, the safe environment of the Netkey card
A new IDEA or AES session key is randomly generated to start the voice encryption process on the telephone before any speech is transmitted. Sec-Tel devices negotiate the session key and type of algorithm during connection set-up as part of transmission-path authentication. At the end of the call, the session key is securely discarded and not used again – all power is removed from the crypto module to ensure that all data in respect of the call is destroyed.
Fully integrated HW module based on Intel Strong Arm Processor and DVSI advanced speech Vocodor for superior speech quality.
Well established Open protocol Encryption Standards employed, RSA, IDEA, AES, SHA-1, MD5
User Authentication by asymmetric RSA 1024bits x 509 v3 certificates (in keycard)
Keycard issued by the Security Division of Deutsche Telecom (Telesec)
Certificates and all encryption software blocks signed by Deutsche Telecom Trust centre
Digital Signatures according to strict German Digital Signature Act SigG
State-of-the-art audio codec for encrypted calls (excellent speech quality)
ITSEC: Security evaluation criteria for IT systems
Transmission path authentication in compliance with Deutsche Telecom’s patent
Local management following authentication (Blacklist, Whitelist)
Keycard certified to ITSEC Evaluation Level E4, mechanical strength HIGH
Encryption module ITSEC Evaluation Level E3 (pending)
Encryption : Symmetrically, IDEA, 128 bits or AES 256 bits
Local management via RS232 port and supplied PC software
Short authentication time
Negligible speech delay during encrypted calls
Encryption calls as simple as making standard GSM vice alls
During secure calls, NO transmission of plain speech possible (not even by chance or operator error)
Compatible with Sec-Tel’s LineSec for making secure calls to ISDN landlines
True random number generator implemented in Hardware |