Security solution

advertisement
Security solution
ADYTON
revolutionary
security
Transactional services. Powering progress
ADYTON
Highly secure
Focus on user
Reliable
Secure data transaction systems – including
token generation, transaction processing, digital
signatures, data protection – are built around a
Hardware Security Module (encryption device).
Operating ADYTON is easier than operating
a Smartphone! The front panel is clearly
arranged in blocks: display, capacitive keys and
authentication devices.
Atos Worldline now offers a revolutionary
solution: ADYTON. This radically new hardwarebased cryptographic accelerator provides
unseen security, speed and user-friendliness.
ADYTON adds a new dimension to the overall
security, by including three authentication
methods: the fingerprint, chip-card and password
authentication. All of which are perfectly
accessible at the front of the device. ADYTON
guarantees dual control for administrators and
security officers.
The 24-bit color display uses colors with
strong contrasts for easy legibility. Wizards
guide the user through the selected
operations and user input is clearly indicated
on the display. There are also shortcuts for the
most common functions.
ADYTON runs on a QNX® Neutrino® RTOS
operating system, ensuring high software
stability and reliability. To reduce mechanical
downtime all moving or rotating parts, like
switches or a cooling fan were removed from
ADYTON.
Meeting all current international standards, like
FIPS 140-2 and PCI HSM, ADYTON is also fit to
fulfill future standards.
The keypad gives a clear feedback with
the help of its distinct illumination. The
hexadecimal layout also allows easy key entry.
Inputting text is possible – like on your mobile
phone via the numeric keys. Large keys and
the four arrow-keys make navigating through
the screens an effortless task.
Great styling
ADYTON’s styling is a fusion of fashionable
beauty and functional perfection. It is the product
of ingenious minds. The housing is aluminum, a
perfect heat conductor, which allows for passive
cooling. This removes the need for electrical
cooling, which means a lower energy footprint,
lower noise and higher reliability.
A top-level jury has chosen ADYTON as winner
of the red dot design award 2012. The red dot is
acknowledged as seal of quality for extraordinary
product design.
Low cost of ownership
It is not only ADYTON’s outstanding reliability and
performance that keep total costs of ownership
low, but also some less obvious features.
As ultimate novelty Atos Worldline introduces
three unique authentication methods on the
front panel – keys for password input, a chipcard reader and fingerprint reader. ADYTON
is perfectly prepared to meet the future FIPS
140-3 requirements!
Powerful
The design also holds modern technology, like
capacitive keys with distinct white and blue
illumination, a fingerprint-reader, chip-cardreader, USB connector and a high-resolution
color display.
With the robust guide rails on each side, ADYTON
easily slides into the ADYTON Rack frame for
simple, secure installation in IT-cabinets. This
particular rack features two physical locks,
covered mounting holes, two hot-swappable
power supplies and two gigabit LAN connectors.
The design also takes external factors into
account: two hot-swappable power supplies
and two gigabit LAN connectors guarantee that
ADYTON will run on and on and on. Being mainly
integrated in IT cabinets with restricted air
circulation, ADYTON was tested under extreme
conditions.
ADYTON is trimmed to power and revolutionary
reliability. It calculates about 7,000 RSA private
key operations and over 10,000 symmetric-key
transactions – per second. The platform is based
on a QorIQTM P1 dual-core processor and has
a cryptographic accelerator designed by Atos
Worldline.
High performance also needs suitable channels.
The cryptographic operations are injected in the
network via two gigabit LAN connections.
For example, the integrated user-interface: it
makes extra management devices needless. Or
the push and pull cloning: for a fast and simple
remote management of your Hardware Security
Modules.
And like all new devices from Atos Worldline,
ADYTON is also compatible with the previous
devices: host operations with DEP/T6 were
foreseen.
Cloneable
The configuration of one ADYTON can be cloned
to make two or even more ADYTONs identical.
The principle of cloning is based on the ADYTON2-ADYTON communication (SSL) and there are
two ways of cloning:
Pull Cloning: Add a new ADYTON to a system
by copying the configuration of a master
ADYTON onto a client device. The cloned
devices will be operable in no time.
Push Cloning: Update a system with several
ADYTONs via the master ADYTON. Updates
are downloaded and installed on the master
device first. Afterwards the new configuration
is distributed onto the client devices.
Specifications
ADYTON
Rack
Tamper evident, tamper responsive and
tamper-proof design
Increases high reliability
Color display, fingerprint reader (FIPS 201),
chip-card reader, USB-Host, HEX-keypad
2 redundant gigabit Ethernet
ca 7,000 digital RSA private key operations
per second
+10,000 symmetric key transactions per
second
Host Authentication through SSL (optional)
Push/Pull cloning
Communication
USB-Device
1 gigabit LAN connector
Physical characteristics
Dimension: 24 x 7 x 18.5 cm (w x h x d)
Ambient temperature: 0°C – 35°C
Relative humidity: 10%-90%
100-240 VAC, 50/60Hz, 1.4A
Certification and
compliance
FIPS 140-2 Level 3 certified
Hardware FIPS 140-2 Level 4 certified
FIPS 140-3 (draft) compliant
Fingerprint FIPS 201 certified
2 redundant hot-swappable power supplies
Two physical locks for authorized removal of
ADYTON and ADYTON Rack
Hot-swappable ADYTON
Physical characteristics
19” rack for integration in standard IT
cabinets – 2U High
Dimension: 48 x 8.8 x 43 cm (w x h x d)
Weight: ~15 kg
100-240 VAC, 47-63Hz, 1.5-1A
Communication
USB device
2 gigabit LAN connectors
Interfaces
(ADYTON and rack)
Dedicated API
PKCS #11
JCE (Java Cryptographic Extension)
ECBCA
IAIK-JCE
OpenSSL Engine
PCI HSM compliant
FCC, EC, ROHS compliant
Algorithms
Random generator (SP800-90)
RSA (X9.31 key generation, encrypt/decrypt,
sign/verify)
ECC (key generation, encrypt/decrypt,
sign/verify)
(T)DES (encrypt/decrypt, MAC)
AES (encrypt/decrypt, MAC)
HMAC
MD5, SHA1, SHA2, SHA256, SHA512
X509
All functions supported by OpenSSL Crypto
Library (www.openssl.org)
The information in this document is subject to change without notice and shall not be construed as a commitment by Atos Worldline. While Atos Worldline has made every attempt to
ensure that the information contained in this document is correct, Atos Worldline does not provide any legal or commercial warranty on the information and technology provided in this
folder. Furthermore, Atos Worldline reserves the right to change the physical and technical features of this product without advance notice. The content of this document, including but
not limited to trademarks, designs, logos, text, images, is the property of Atos Worldline and is protected by the Belgian Act of 30.06.1994 related to the author’s right and by the other
applicable Acts. The words ADYTON and other trademarks used in this folder are the property of Atos Worldline. QNX® Neutrino® is a registered trademark of Research In Motion Limited.
These terms shall be governed by and construed in accordance with the laws of Belgium. Courts located in Brussels have jurisdiction in the event of any litigation.
About Atos
Atos is an international information technology services company with annual
2011 proforma revenue of EUR 8.5 billion and 74,000 employees in 42 countries.
Serving a global client base, it delivers hi-tech transactional services, consulting
and technology services, systems integration and managed services. With its
deep technology expertise and industry knowledge, it works with clients across
the following market sectors: Manufacturing, Retail, Services; Public, Health &
Transports; Financial Services; Telecoms, Media & Technology; Energy & Utilities.
Atos is focused on business technology that powers progress and helps organizations to create their firm of the future. It is the Worldwide Information Technology
Partner for the Olympic and Paralympic Games and is quoted on the Paris Eurolist
Market. Atos operates under the brands Atos, Atos Consulting & Technology Services, Atos Worldline and Atos Worldgrid.
About Atos Worldline
Atos Worldline brings together Atos core expertise in Hi-Tech Transactional Services (HTTS) with over 35 years of experience and recognized know-how in the
payment industry. A leader in end-to-end services for critical electronic transactions, Atos Worldline is specialised in electronic payment services (including issuing, acquiring, terminals, and card and non-card payment solutions & processing),
eServices for customers, citizens and communities (eCS) as well as services for
financial markets. Atos Worldline is committed to continuous R&D and innovation so its customers can benefit from leading-edge solutions to stay ahead of
market evolutions. Atos Worldline generates annual revenues of € 913 million and
employs over 5,400 people in the world. For more information, please visit: atosworldline.com
Atos Worldline SA/NV
Haachtsesteenweg 1442 Chaussée de Haecht
B-1130 Brussels
Belgium
Tel: +32 (0)2 727 66 44
Fax: +32 (0)2 727 72 83
DISTRIBUTOR STAMP
atosworldline.com/terminals
Atos, the Atos logo, Atos Consulting & Technology Services, Atos Worldline, Atos Sphere, Atos Cloud, Atos Healthcare
(in the UK) and Atos Worldgrid are registered trademarks of Atos SA. June 2011 © 2011 Atos. Confidential information
owned by Atos, to be used by the recipient only. This document, or any part of it, may not be reproduced, copied,
circulated and/or distributed nor quoted without prior written approval from Atos.
Download