Castleforce IT Security Team
id Quantique a quantum leap for cryptography

Cerberis

A fast and secure solution: high speed encryption combined with quantum key distribution
idQ’s Cerberis solution offers a radically new approach to network security, combining the sheer power of high-speed layer 2 encryption engines with the unconditional security of quantum key distribution (QKD) technology.

Dedicated appliances perform high-speed encryption based on the proven Advances Encryption Standard (AES). Point-to-point wire-speed encryption with low latency and no packet expansion is made possible by operating at the layer 2 of the OSI model. Three protocols are supported, namely Gigabit Ethernet, SONET/SDH (up to 10Gbps) and ATM (up to 622Mbps).

Enquire about this product

X Virus X Spyware X Spam X Web/IM X IPS/Patch Mgmt 5 Data/System Mgmt


id Quantique Cerberis appliances

Benefits of Cerberis

  • The exchange of secret encryption keys - the Achilles heel of classical cryptography products, is performed in a separate appliance called the QKD server. A fundamental principle of quantum physics - observation causes perturbation - is exploited to exchange secret keys between two remote parties over an optical fiber with unprecedented security. The QKD server autonomously produces, manages and distributes secret keys to one or more encryption engines.
  • Taking the vulnerability out of the key exchange process - the Achilles heel of existing cryptography solutions is the key exchange process. While conventional key distribution techniques rely on public key cryptography or manual exchange, and therefore offer only conditional security, the secrecy of keys distributed by quantum cryptography is guaranteed in an absolute fashion by quantum physics. Quantum Key Distribution is a technology that exploits a fundamental principle of quantum physics - observation causes perturbation - to exchange cryptographic keys between two remote parties over optical fiber networks with absolute security. Vectis uses a patented and well- documented auto-compensating optical platform to secure key exchange over distances of up to 100 km.
  • A scalable solution that grows with your needs - The Cerberis solution is cost-effective as it evolves with the network. Additional encryption engines can be added to a QKD server at any time, without network interruption. This allows for a scalable deployment, adding more encryption appliances whenever necessary to increase the bandwidth or to add additional protocols, without upgrading the QKD server. With the Cerberis solution, your infrastructure investments last longer and your total cost of ownership is reduced.
  • Installation and management is a breeze - The Cerberis solution integrates seamlessly into existing fiber-optic network infrastructures. A simple installation procedure ensures rapid deployment. Top-notch management tools, such as on-line singlepoint monitoring via Simple Network Management Protocol (SNMP) and off-line web-based applications, give network administrators the capability to centrally monitor and manage the appliances of the Cerberis solution within an enterprise network.
  • Regulatory compliances? - Get peace of mind with the most technologically advanced solution - Federal compliance regulations, such as BASEL II, SOX, HIPAA and GLBA, are mandating companies to protect their private data. The scope of threats in today's information society is vast and growing. Companies securing their fiber-optic network with the Cerberis solution effectively raise, to an unprecedented level, the security of communications between their remote sites. It gives them the peace of mind of knowing that they are using the latest in cryptographic technological evolution, and allowing them to focus on other threats.

id Quantique Evaluation


Key Features

  • High speed full duplex encryption - Ethernet: 10 / 100 Mbps, 1 Gbps, SONET/SDH: OC-3, OC-12,OC-48,OC-192, ATM: OC-3, OC-12
  • Encryption algorithms - AES 256-bit
  • Automated key management - Secret keys exchanged via quantum physics “Set and forget” operation
  • Point-to-point Layer 2 encryption - For LAN / MAN / SAN networks
  • No impact on network performance - Latency below 15ms, Total bandwidth availability, wire speed
  • Simple and secure device management - On-line monitoring via SNMP v3, Off-line management via web server and, Touch panel display user interface, Identity-based authentication
  • Scalable, stackable - Up to 4 encryption appliances in parallel