KoolSpan Lock
The KoolSpan Lock, a high-performance security appliance, serves as the foundation of an innovative, simplified model for security network connectivity across wired and wireless infrastructures. The Lock can protect laptop or desktop computers, subnets, wireless LANs, and generally any community of computers or devices that run critical applications. The KoolSpan Lock authenticates authorized user Keys and/or other network Locks, which results in a secure 256-bit AES session with per-packet keying. Although not a firewall, the Lock is a security gatekeeper. Nothing can be discovered beyond it without an authenticated, secured session. KoolSpan Lock capabilities include:
- LAN-to-LAN bridging
- Remote users
- Branch office
- Secure wireless
- Secure VoIP
A solid state device with no moving parts, the Lock is equipped with a TrustChip™ (Smart Card version) and cryptographic processor. The TrustChip stores crypto keys, identities, and a database of registered users. Secured in flash memory and controlled by the KoolSpan Manager, this encrypted database can be accessed only by using the Lock’s internal TrustChip. When installed behind a firewall, all the Lock’s external communications are enabled via a single UDP port forwarded to, and secured by, the unit.
How It Works
The KoolSpan Lock is available in a 1U rackmount chassis or as a VHS Cassette-size appliance device. The Lock simply authenticates users and bridges their Ethernet traffic onto the network. It contains an embedded flash memory and cryptographic processor in a tamper-resistant case. The Lock supports a "keyless exchange" and provides WiFi security, bridging, and remote access (VPN) connections, as determined by an administrator.
The Lock can authenticate other users as well as other Locks. Thus it can act as a remote access bridge (gateway) and an Ethernet bridge between two networks. A single Lock can support dozens of "Child Locks," affording a simple way to extend infrastructure support to field offices.
The KoolSpan Lock protects both local WiFi networks and remote access users simultaneously, bridging both types of connections onto the LAN as local users. The WiFi solution works regardless of the security capabilities of your already-installed WiFi equipment (WEP, WPA or WPA2), providing 256-bit AES security across the board.
The KoolSpan Lock does not proxy your connection onto the LAN. You are connected as a true LAN peer with a full Layer 2 connection. Everything you could do in the office when plugged in, you can now do in the field with no changes. Disaster recovery, data centers and branch office locations are all interconnected with true Ethernet connectivity.
Management and Maintenance
The Lock automatically restarts on power failure and fails "safe" in the event of a failure. A single port in the firewall forwards external KoolSpan traffic to the Lock. The Lock discards traffic that isn't authenticated. The Lock is managed by the KoolSpan Manager. You can place multiple Locks strategically in your network wherever targeted asset protection or remote access is needed.
The KoolSpan Lock firmware is field-upgradeable. A full SYSLOG output can be established to report authentication attempts, authentication failures and connected users.
The KoolSpan Lock is FCC approved and housed in an extruded aluminum chassis. It is tamper-evident and not user-accessible. Two indicator lights on the Lock display both proper operation/power and link status so that the state of the connection is readily apparent.
KoolSpan Lock Specifications
- Embedded Smart Card: 3DES & PRNG on board
- Can be paralleled for additional capacity
- Solid state - no hard disk or moving parts
- Encryption of all Layer 2 data
- Compatibility with virtually all network gear
- Latency: 260 µsec (microseconds)
- Two 802.3 10/100 Ethernet ports:
(one “trusted” and one “non-secure” network)
- 6vdc, 800ma (supplied via 110vac adapter)
- Dimensions:
18.57 cm (7.31”) x 10.62 cm (4.18”) x 3.45 cm (1.36”)
- FCC Part 15 Class A Certified
Please contact KoolSpan for additional information on the KoolSpan Lock appliance. |