SafeNet, The Foundation of Information Security
 
 
Language: English English Japanese Chinese Chinese Spanish Portuguese
sample image
Blank
Email this page Print this page Feedback
   KeySecure Appliance
Blank
DataSecure
Blank

SafeNet KeySecure

Centrally Protect and Manage Cryptographic Keys

KeySecure

SafeNet KeySecure appliances offer organizations a way to leverage one or any number of disparate encryption solutions, while enjoying the efficiency and security of a dedicated, centralized appliance for key management. KeySecure offers robust capabilities for managing cryptographic keys across their entire lifecycle, including key generation, key import and export, policy management, key rotation, and much more.

Robust security
KeySecure centrally manages keys using a hardened appliance, which maximizes overall security. KeySecure offers a range of robust security features:

  • Capabilities for segregating administrative duties between different administrators.
  • Granular authorization capabilities that enable constraints to be placed on user operations based on specific key permissions
  • Active alerting capabilities so that, if attempts to breach protected data occur, mechanisms are employed to alert administrators.
  • Secure key distribution through support of SSL.
  • Key Secure appliances are FIPS 140-2 Level 2 and Common Criteria EAL2 compliant.

High performance
KeySecure centralizes all key management on a highly specialized appliance that delivers robust performance. Even for large distributed enterprises that use multiple, disparate encryption solutions, keys can be centrally managed—without making any perceptible impact on system performance.

Broad flexibility and interoperability
KeySecure offers key management capabilities that can be integrated with virtually any commercial encryption product. Supported technologies include:

  • Application encryption, either software or hardware based.
  • Database encryption, including native database encryption.
  • Laptop and device encryption.
  • z/OS mainframe encryption.
  • File and storage level encryption solutions.

KeySecure can be integrated through open APIs with virtually any off-the-shelf encryption product, including database encryption technologies from database vendors, laptop encryption, file and storage level encryption, and more. KeySecure supports a wide range of open cryptographic standard interfaces, including PKCS #11, JCE, MS-CAPI, and .NET. Further, customers and partners can take advantage of KeySecure’s XML interface to develop their own custom software utilizing the enterprise key management functionality of KeySecure.

Continuous availability
SafeNet customers can deploy multiple KeySecure appliances in a clustered configuration with real-time replication of keys, policy, and configuration information across multiple appliances—enabling complete disaster recovery and business continuity. KeySecure also offers redundancy of hardware components, including power supplies and fans, along with multiple network interfaces and dual SCSI drives in a RAID-1 configuration.