Luna SP – Java Application Security Module
Luna® SP secures Java™ and Web services applications with a protected
application execution environment, powerful access control policies, and
an integrated FIPS hardware security module (HSM) to protect the integrity
of applications and deliver high-performance cryptographic processing
and key management.
Overview
Luna SP's RoHS compliant HSM offers hardware key management and ensures that cryptographic keys and processes are stored and managed exclusively within FIPS 140-2, Level 3* validated hardware. Code signing and verification maintain the integrity of custom Java application code and prevent unauthorized application execution. Additionally, strictly enforced access and usage policies prevent unauthorized access to sensitive applications or data. With tamper-resistant hardware, network connectivity, and secure remote administration, Luna SP makes it easy to deploy high-assurance Java Web service applications with confidence.
* RoHS compliant version is in process for FIPS and Common Criteria.
Solutions
Luna SP has a standard Java application server platform in a single security appliance to provide a secure platform for the deployment of Web applications, Web services, and Java applications requiring the highest levels of trust. Luna SP makes it easy to increase application security by providing a trusted execution environment that protects an application's sensitive software components and cryptographic keys from physical, logical, and operational threats. Customer-provided application code is digitally signed and securely installed on the Luna SP to assure code integrity and prevent the execution of unauthorized code.
Product Highlights
- Signed Code
A trusted security officer must digitally sign application code before it is loaded onto the Luna SP. The code-signing process prevents unauthorized applications from being executed while maintaining the integrity of applications loaded on the Luna SP.
- Protected Application Environment
Applications installed on the Luna SP execute within a protected application environment that isolates the application from the underlying security system and cryptographic processes on the HSM.
- Standard Tools for Rapid Development of XML and Web Services
Luna SP includes an integrated Web server with SOAP stack and J2SE compliant XML Web service container within the protected application environment to accelerate application development.
- New Features
New Cryptography features include elliptic curve cryptography (ECC), Elliptic Curve Digital Signiture Algorithm (ECDSA) and is utilizing Java Runtime Environement version 1.5 (JRE 1.5).
HSM Management Software
The SafeNet Luna SX is a software management system for SafeNet HSMs designed to reduce administration and set-up time. Luna SX allows for easier installation of the SafeNet Luna SA or SafeNet Luna SP HSM. Complex operations are simplified to a single button-click. This reduces deployment time drastically, ultimately saving both time and money.