Netgard™ Encryption Suite
Quick-to-Deploy Alternative to Type-1 for Secret & Below Environments
The Netgard™ Encryption Suite is a secure network product family designed to enforce a centrally‐defined security policy for the flow, encryption, and audit of data packets transferred between network nodes. The Netgard Encryption Suite delivers a unique implementation of cryptographic technology with high‐assurance, policy‐based enforcement for data protection and integrated security controls essential to threat mitigation in the network environment.
NSA-approved Suite B encryption algorithms provide security while releasing the user from the logistical burden of traditional Type-1 solutions. Overall: the Netgard Encryption Suite offers an easy-to-deploy alternative or supplement to Type-1 encryption for Secret and Below environments.
Available for pre-order.
- Rapid deployment situations
- Unattended operations
- High-risk environments
- Commercial interoperability situations
- Multiple security level networks and cross domain environments
- FIPS 140-2
- Common Criteria
- AES-128/192/256, 3K-3DES algorithms
- Packet authentication using HMAC-SHA-1/SHA-2/MD5
- Agile Communities of Interest (COI)
- Manage up to 500 devices
- Support for v4/v6 translation
- Non-CCI: Releases users from the logistical burden of Type-1
- Self-Generated Key: FIPS-certified PRNG creates symmetric keys, eliminating burdensome key management requirements
- Dynamic Communities Of Interest (COI): Securely organizes network resources for the purposes of data sharing and communication on-the-fly
- Port Filtering: Controls which port/application connections are permitted
- Protocol Filtering: Controls which network protocols are allowed for communications
- Mandatory Access Control (MAC): Restricts access and propagation at the data level
- Discretionary Access Control (DAC): Restricts who and from where the network object may be accessed
- Dead Peer Detection (DPD): Determines if the connecting peer is still healthy
- Object Reuse: Prevents the inadvertent release of residual data typically in unused fields or at the end of a packet buffer
- Identification and Authentication (I&A): Securely verifies the user’s identification and establishes authorization for access
- Auditing: Monitors and records verifiable, security-relevant operations
- Over The Network Keying (OTNK): Controls Pre-Shared Key (PSK) lifetime; at a user-configured time period, pushes new PSKs to all devices
- Ease of Installation: End devices can be installed in minutes by untrained personnel
- Software Upgrade: Automated upgrade of multiple devices with no loss of keys or configuration
- Dynamic Network Management: Allows total control and instantaneous policy changes over all devices in the network
- PKI Support: Supports CAC-based authentication and Non-Person Entity (NPE) X.509 certificates
- Advanced VPN Features: Supports NAT-traversal and DHCP on all interfaces
- Common IP Security Option (CIPSO): FIPS-188-compliant IP labeling support
Product Specifications
- Dimensions: 6” x 5.5” x 1.5”
- Weight: 2 lbs
- Power: 20 watt max
- Interfaces: 2x 10/100/1000
- Base-T Speed: 300+ Mbps full-duplex
Next Steps
- Company
- Products
- Brands
- API Electronics
- C-MAC (RF2M Division)
- CMT
- Cryptek
- EMCON Emanation Control Limited
- Filtran
- ION Networks
- Keytronics
- National Hybrid
- RTI Electronics
- Running Springs Audio
- Secure Systems & Technologies (SST) Ltd.
- SenDEC
- Sensonics
- Spectrum Control
- Spectrum Microwave
- Spectrum Power
- Spectrum Sensors
- TM Systems
- Media Room
- Investor Relations
- Contact
- Events
