© Softmarkwww.softmark.com
- 1 -
ContinuousAvailability
OperationalSimplicity
FinancialAdvantage
Secure Your Stratus Systems
VOS Encryption Capabilities
© Softmarkwww.softmark.com
- 2 -
Provide comprehensive, cost effective data encryption program Satisfy internal audit requirements Satisfy corporate governance, regulatory and industry standards
(PCI) Eliminate security threats and vulnerabilities Reduce cost by automation Protect your most important asset – your data
Objectives
© Softmarkwww.softmark.com
- 3 -
Encrypted Business Databases
Encryptor Components
Keys Database
Key ManagementSystem
Encrypted Tapes
Encryptor TapeEncryptor
© Softmarkwww.softmark.com
- 4 -
Key Management Keys are protected in a secure encrypted (AES) database Keys may be changed up 50 times during their life cycle Archives include date/time of change and user-name Database and Key functions protected by
– Standard VOS access controls – VOS/Auditor – Registration Admin– RADIUS
Encryption and Key Management require split knowledge
© Softmarkwww.softmark.com
- 5 -
Key Management & VOS Inherits VOS’ legacy security and registration features Registration-Database authorization RADIUS – external authorization Login-Admin
– Temporary restrictions– Account expirations and renewals– Failed access attempts– Password grace time
Password-Security Admin– Password format requirements– Password renewal
© Softmarkwww.softmark.com
- 6 -
Key Management
Keys Database
Key ManagementSystem
VOS-Auditor
RADIUS
Archives
Encryptor Admin Registration Admin
VOS LOGIN Admin VOS PASSWORD Admin
© Softmarkwww.softmark.com
- 7 -
Keys Database
Encrypted Business Database
Application
Encryptor
VOS Encryptor
AES, T-DESEncryption
Unchangeduser programs
Key ManagementSystem
Seamless integration withexisting VOS application
© Softmarkwww.softmark.com
- 8 -
VOS Encryptor Provides fast, simple, reliable and transparent data encryption Uses secure 128-bit keys Meets PCI Key management requirements Incorporates latest cryptographic algorithms (AES, 3DES) Encrypts selected data - by file / directory Supports all file types: Sequential, Fixed, Relative, Indexed Allows local and remote encrypted tape save/restore Offers simplicity and ease of use:
– No additional hardware or software– No application changes– Single point of configuration– Practically no learning curve
© Softmarkwww.softmark.com
- 9 -
Simplicity by design Scalability
– Single system-wide database– Multiple Application-based configurations
Flexibility– Single files– Directories– Star-names (wild-cards)– Exclusions
Conversion tools– Application business / transaction data– Static files (source-code, reports, configuration)
© Softmarkwww.softmark.com
- 10 -
Tape-Encryptor: Save/Restore
Business Databases (“Clear”)
Encrypted Tapes
Keys Database
TapeEncryptor
AES, T-DESEncryption
Key ManagementSystem
© Softmarkwww.softmark.com
- 11 -
Tape-Encryptor: Remote
Encrypted Tapes
TapeEncryptor
Business Databases (“Clear”)
TCP/IP
Backup Backup
RestoreRestore
Non-Productionmodule
Performance overhead of Save/Restore and tape
activities is off-loaded to a non-Production module
© Softmarkwww.softmark.com
- 12 -
SoftMark solutions are exclusivelydistributed worldwide by
Contact:
Mr. Eran MertensE-mail: [email protected]: 516-536-6200
ARI: http://www.stratusoft.com/SoftMark: http://www.softmark.com/