Out Of Band Solutions

Out of Band Solutions
Powerful solutions for a secure future



Secure Out of Band & Console Access

CDI

Secure Session Encryptor (SSE)

Encryption Range Overview
Download >

Download SSE Brochure
Download >

Click on the image to enlarge.

Secure Session Encryptor (SSE)

General Information

Secure Session Encryptor (SSE) is a USB based hardware encryption device that allows Triple AES communication over IP networks or dial-up connections to remote CDI devices in the field. The SSE can be installed at NOC sites or can be portable with laptop computers. The device requires CDI's Secure Session Terminal (SST) software client to enable the SSE to function. The SST software is included in the purchase of an SSE. The SSE is managed by CDI's DDM manager.

The problem with Secure Shell (SSH)

SSH is a popular "freeware" protocol meant to replace clear text Telnet by adding encryption. The problem is many implementations of SSH have a variety of security vulnerabilities which are reported frequently on security websites. As each vulnerablitiy is patched, others appear. This is compounded by the fact that anyone who has access to the internet can download an SSH client from hundreds of sites that offer them for free. SSH is software based. SSH provides no authentication and carries no government sanctions or credibility.

The Solution- Secure Session Encryptor-SSE

SSE is a hardware based AES/3DES encryptor that attaches to the USB port on any workstation or laptop. With a CDI proprietary client installed (SST), the SSE encryptor can encrypt/decrypt all communications data on a connected PC. Each encryptor has a unique ID along with a 128 bit encryption key and utilizes AES/3DES encryption. The device has tamper switches which zero all sensitive data in the event the device is opened. The SSE will generate a unique session key for each session established with a remote device. The device is USB powered so no power adapter is required.

Security Management

DDM, Distributed Database Manager, can manage an unlimited number of SSE’s remotely as well as all other CDI products from a single workstation. This eliminates the need to update each unit individually when there is a database change. Audit trail reports are extracted automatically.

Deployment

The SSE is a portable device that can be used from remote laptops or fixed workstations on a network. The device can be keyed remotely by a DDM manager.