Product Information

  The Handset

  Accessories

  Usage Rates

  Price List

  Encryption Features


 

SEC-TEL ENCRYPTION FEATURES

The technology is based around two internal tamper-proof SmartCards.   One delivers standard GSM services, whilst the other, issued by a globally recognised Trust Centre, delivers powerful authentication and encryption using established and open protocols.    This is known as the Crypto-Sim or Netkey card.   These two technologies are merged to create a unique, unbreakable cipher key for each and every call – providing failsafe point-to-point authentication and unbreachable privacy from one  handset to another.

The Encryption-system employed is a hybrid mechanism, widely used in high security products.    The Sec-Tel  phone achieves full bi-directional authentication with the secret keys held securely in, and never leaving, the safe environment of the Netkey card

A new IDEA or AES session key is randomly generated to start the voice encryption process on  the telephone before any speech is transmitted.   Sec-Tel devices negotiate the session key and type of algorithm during connection set-up as part of transmission-path authentication.  At the end of the call, the session key is securely discarded and not used again – all power is removed from the crypto module to ensure that all data in respect of the call is destroyed.

Fully integrated HW module based on Intel Strong Arm Processor and DVSI advanced speech Vocodor for superior speech quality.

Well established Open protocol Encryption Standards employed, RSA, IDEA, AES, SHA-1, MD5

User Authentication by asymmetric RSA 1024bits x 509 v3 certificates (in keycard)

Keycard issued by the Security Division of Deutsche Telecom (Telesec)

Certificates and all encryption software blocks signed by Deutsche Telecom Trust centre

Digital Signatures according to strict German Digital Signature Act SigG

 

State-of-the-art audio codec for encrypted  calls (excellent speech quality)

ITSEC:  Security evaluation criteria for IT systems

Transmission path authentication in compliance with Deutsche Telecom’s patent

Local management following authentication (Blacklist, Whitelist)

Keycard certified to ITSEC   Evaluation Level E4, mechanical strength HIGH

Encryption module ITSEC Evaluation Level E3 (pending)

Encryption : Symmetrically, IDEA, 128 bits or AES 256 bits

Local management via RS232 port and supplied PC software

Short authentication time

Negligible speech delay during encrypted calls

Encryption calls as simple as making standard GSM vice alls

During secure calls, NO transmission of plain speech possible (not even by chance or operator error)

Compatible with Sec-Tel’s  LineSec for making secure calls to ISDN landlines

True random number generator implemented in Hardware

About Us | Products | Why Secure | Contacts | Resources