Home > Produkte > PrivateServer HSM (Hardware Security Module)

PrivateServer HSM (Hardware Security Module)

PrivateServer™ is ARX’s highly secure (FIPS validated) network attached, Hardware Security Module (HSM) that provides a secure environment for conducting sensitive cryptographic operations, secure key storage and management of a large number of keys.

 

fips

 
Quick-Links
    Kontakt
    Produktbroschüre
    Leistungsmerkmale
What does it do?
How does it work?
PrivateServer HSM Benefits
Who is the solution aimed at?
Certification
Technical Specification
ARX has provided a solution
that is secure and flexible

Johan Palmquist, VolvoFinans

Ausgewählte Clients
HSBC Standard Chartered Volvofinans DBS (Development Bank of Singapore)
Canal+ Giesecke & Devrient Depfa Lipman
vert
What does it do?

PrivateServer is a high-performance Hardware Security Module (HSM). PrivateServer provides a wide range of cryptographic operations to application servers using TCP/IP.

These include:

» EMV Card issuance;
»

EMV authorizations;

»

EMV data preparation;

» EMV-CAP authorizations; and
» Pin verification.

Back to Top vert

How does it work?

Any application that requires a cryptographic-based process will access PrivateServer through the network using the
PrivateServer client. All data transferred across the network is encrypted. The process then takes place in the server, which accesses relevant keys provided the connecting user has the necessary permissions to do so. The entire operation is performed by PrivateServer which then replies back to the client application to enable the transaction.

Back to Top vert

PrivateServer HSM Benefits

» Stores and securely manages a large number of keys.
»

Strong user authentication.

» Internal audit mechanism.
» Secure upgrade.
» Secure backup and restore.
» Customizable interface.
» Secure, tamper-evident device.
» Easy to deploy and manage.
» Uses standard API's: PKCS#11, Microsoft® CAPI and JCA Strict user access control.
» Cost Effective, and more

Back to Top vert

Who is the solution aimed at?

Financial institutions, card issuers and governmental organizations requiring security-related deployments such as the CA Signing Engine, EMV data preparation and card personalization, PIN verification, data encryption and data signing.

btnTopBack to Top vert

Certification

FIPS 140-1 level 3 certification granted.

FIPS 140-2 level 3*

* Certification in progress. 

Back to Top vert

Technical Specifications
Asymmetric Encryption Algorithm
» RSA (320-4096 bits)
Physical Dimensions
» W 48.3cm; D 44.7cm; H 17.8cm
» 6U Rack mountable
» Weight 15KG
PKI Vendor Compatibility
» Microsoft CA (Win 2000, 2003 Server)
» Entrust PKI
» Baltimore UniCERT
Authentication Modes:
» Smart Card (Windows only)
» USB Token (Windows only)
» Software Key (Windows, Linux, HP, AIX and Solaris)
Symmetric encryption algorithms:
» DES
» Triple-DES
» AES
Performance
» 450 RSA Signatures per second (1024 bit)
» 5500 Symmetric Transactions per second
Security Standards Certification
» FIPS 140-1 Level 3
Certificate #184
» FCC Subpart B Class B
» EN 55022 Class B for AC mains and Ethernet lines
Hash functions
» SHA-1, SHA-256, SHA-512
» ISO-Hashing
» ARDFP
Secure key Storage
» Yes
Remote Management
» Yes
Connectivity
» TCP/IP Ethernet
» LU6.2 Token Ring
» LU6.2 SDLC

Cryptography API support
» PKCS#11
» Microsoft-Cryptographic
API (CAPI)
» Java (JCA or extended)
OS Support (Client)
» MS Windows 2000, XP, 2003 Server
» Sun/ Solaris
» HP-UX
» AIX
» OS/2
» Linux
» STRATUS/VOS
» Tandem
» MVSOS390

Back to Top

© 2008 ARX, All Rights Reserved. Terms of Use| Privacy Policy| Legal
Über uns | Produkte | Lösungen | Industriezweige | Ressourcenzentrale | Partner | Unterstützung | Kontakt
Englische | Französische | Deutsche | Italienische | Spanische