Secure Cloud
Computing
Secure Cloud
Computing
Secure Cloud
Storage
The first complete security
solution that lets you
take advantage of Public Clouds
while
proving
compliance to
●
Encryption
●
Tokenization
●
Key Management
●
Cryptographic
hardware module
●
Fully integrated
●
Reduce scope of
compliance audits
●
Manage
trillions
of
keys/objects
●
Fully operational in
48 hours or less
FEATURES
BEFORE
KeyAppliance
System-1
Sensitive
Data
11001011010System-4
Sensitive
Data
11001011010System-2
Sensitive
Data
11001011010System-5
Sensitive
Data
11001011010System-3
Sensitive
Data
11001011010System-1
Sensitive
Data
11001011010System-1
Sensitive
Data
11001011010System-1
Sensitive
Data
11001011010System-1
Sensitive
Data
11001011010System-1
Sensitive
Data
11001011010Scope of PCI-DSS Audit
System-1
Sensitive
Data
11001011010System-2
Sensitive
Data
11001011010System-3
Sensitive
Data
11001011010System-4
Sensitive
Data
11001011010System-5
Sensitive
Data
11001011010KeyAppliance
11001011010 11001011010Scope of PCI-DSS Audit
8 GB DRAM
4 Core
64-bit CPU
certified HSM
Or TPM
Dual Gigabit
Ethernet
Automatic
Key Management
Split-Knowledge
Control
Highly
Available
Enterprise
Scalability
Simple
Webservice API
Active Directory
Integration
Graphical
Admin Console
LOWEST COST EKM
appliance.
GUARANTEED!
ARCHITECTURE
Crypto-Module
Internal DB 6 C/C++ Application Java Application Application Server 2 3 LDAP Server 4 5Client Applications
7Key Appliances
Crypto-Module
Internal DB 6 Application Server 2 3 LDAP Server 4 5 RPG Application Ruby/PHP ApplicationNetwork
1 7SECURE CLOUD COMPUTING
E-COMMERCE –
PUBLIC CLOUD
Enterprise
Web
Application
CCN
Name
3
CCN
Token
4
Token
5
1
2
Customer ID
Billing Address
Phone
E-mail address
Order Detail
Customer ID
Name
Credit Card Number
Card Expiry Date
Card Verification Value
Amount
WebAppPublic Cloud
Customer ID
Billing Address
Phone
E-mail address
Order Detail
Token
SECURE CLOUD COMPUTING
E-COMMERCE -
VPDC
Enterprise
Web
Application
CCN
Name
3
CCN
Token
4
WebAppCustomer ID
Billing Address
Phone
E-mail address
Order Detail
Token
VPDC at
provider's
premises
Token
5
1
Customer ID
Name
Credit Card Number
Card Expiry Date
Card Verification Value
Amount
2
Customer ID
Billing Address
Phone
E-mail address
Order Detail
●
Encryption
●
Decryption
●
Key generation
●
Key escrow and
recovery on
StrongAuth
KeyAppliance
●
Automatically transfer
files to public clouds,
VPDC, NAS
●
Reduce cost of
storage infrastructure
FEATURES
Automatic
Key Management
Integration to
Public Clouds
Highly
Available
Enterprise
Scalability
Simple
Webservice API
Active Directory
Integration
Graphical
Interface
FEATURES
Java-based
Free and Open-Source Software
Ciphertext
Public
Cloud or
VPDC
C/C++/C# Application Java ApplicationPlaintext
5 1 1 2 4Key
3Private SAN or NAS
Ciphertext
Public
Cloud or
VPDC
C/C++/C# Application Java ApplicationPlaintext
1 5 5Key
3Private SAN or NAS
DECRYPTION MECHANICS
SECURE CLOUD COMPUTING
HEALTHCARE –
PUBLIC CLOUD
Hospital
Web
Application
PII Keys2
PII3
Tokens7
X-Ray8
Key9
Token XENC File10
5
PII1
Patient ID Tokens Non-PII DataXENC File WebApp
6
Lab
Patient ID Tokens Non-PII Data X-Ray Tokens4
SECURE CLOUD COMPUTING
HEALTHCARE -
VPDC
Patient ID Tokens Non-PII Data
XENC File WebApp
VPDC at
provider's
premises
Hospital
Web
Application
PII Keys2
PII3
Tokens7
X-Ray8
Key9
Token XENC File10
5
PII1
6
Lab
Patient ID Tokens Non-PII Data X-Ray Tokens4
SECURE CLOUD COMPUTING
FOR E-COMMERCE
WebApp
Public Cloud
1
Customer ID
Billing Address
Phone
E-mail address
Order Detail
SECURE CLOUD COMPUTING
E-COMMERCE - 1
Customer ID
Billing Address
Phone
E-mail address
Order Detail
Enterprise
Web
Application
Enterprise
Web
Application
SECURE CLOUD COMPUTING
E-COMMERCE - 2
Customer ID
Name
Credit Card Number
Card Expiry Date
Card Verification Value
Amount
2
WebAppPublic Cloud
Customer ID
Billing Address
Phone
E-mail address
Order Detail
SECURE CLOUD COMPUTING
E-COMMERCE - 3
WebAppPublic Cloud
Customer ID
Billing Address
Phone
E-mail address
Order Detail
Enterprise
Web
Application
CCN
Name
3
CCN
SECURE CLOUD COMPUTING
E-COMMERCE - 4
WebAppPublic Cloud
Customer ID
Billing Address
Phone
E-mail address
Order Detail
Enterprise
Web
Application
CCN
Name
4
Token
Enterprise
Web
Application
CCN
Name
SECURE CLOUD COMPUTING
E-COMMERCE - 5
Token
5
WebAppPublic Cloud
Customer ID
Billing Address
Phone
E-mail address
Order Detail
Token
SECURE CLOUD COMPUTING
E-COMMERCE –
PUBLIC CLOUD
Enterprise
Web
Application
CCN
Name
3
CCN
Token
4
Token
5
1
2
Customer ID
Billing Address
Phone
E-mail address
Order Detail
Customer ID
Name
Credit Card Number
Card Expiry Date
Card Verification Value
Amount
WebAppPublic Cloud
Customer ID
Billing Address
Phone
E-mail address
Order Detail
Token
SECURE CLOUD COMPUTING
E-COMMERCE -
VPDC
Enterprise
Web
Application
CCN
Name
3
CCN
Token
4
WebAppCustomer ID
Billing Address
Phone
E-mail address
Order Detail
Token
VPDC at
provider's
premises
Token
5
1
Customer ID
Name
Credit Card Number
Card Expiry Date
Card Verification Value
Amount
2
Customer ID
Billing Address
Phone
E-mail address
Order Detail
SECURE CLOUD COMPUTING
FOR HEALTHCARE
SECURE CLOUD COMPUTING
HEALTHCARE - 1
Hospital
Web
Application
PII1
WebAppLab
SECURE CLOUD COMPUTING
HEALTHCARE - 2
Hospital
Web
Application
2
PII WebAppLab
SECURE CLOUD COMPUTING
HEALTHCARE - 3
Hospital
Web
Application
PII3
Tokens WebAppLab
SECURE CLOUD COMPUTING
HEALTHCARE - 4
Hospital
Web
Application
PII WebAppLab
Tokens4
SECURE CLOUD COMPUTING
HEALTHCARE - 5
Hospital
Web
Application
PII5
Patient ID Tokens Non-PII DataXENC File WebApp
Lab
Patient ID Tokens Non-PII DataSECURE CLOUD COMPUTING
HEALTHCARE - 6
Hospital
Web
Application
PII Patient ID Tokens Non-PII DataXENC File WebApp
6
SECURE CLOUD COMPUTING
HEALTHCARE - 7
Radiograph:: Courtesy Diego Grez
Hospital
Web
Application
PII7
X-Ray Patient ID Tokens Non-PII DataXENC File WebApp
SECURE CLOUD COMPUTING
HEALTHCARE - 8
Hospital
Web
Application
PII8
Key Patient ID Tokens Non-PII DataXENC File WebApp
SECURE CLOUD COMPUTING
HEALTHCARE - 9
Hospital
Web
Application
PII Keys9
Token Patient ID Tokens Non-PII DataXENC File WebApp
SECURE CLOUD COMPUTING
HEALTHCARE - 10
Hospital
Web
Application
PII Keys XENC File10
Patient ID Tokens Non-PII DataXENC File WebApp
SECURE CLOUD COMPUTING
HEALTHCARE –
PUBLIC CLOUD
Radiograph:: Courtesy Diego Grez
Hospital
Web
Application
PII Keys2
PII3
Tokens7
X-Ray8
Key9
Token XENC File10
5
PII1
Patient ID Tokens Non-PII DataXENC File WebApp
6
Lab
Patient ID Tokens Non-PII Data X-Ray Tokens4
SECURE CLOUD COMPUTING
HEALTHCARE –
VPDC
Patient ID Tokens Non-PII Data
XENC File WebApp
VPDC at
provider's
premises
Hospital
Web
Application
PII Keys2
PII3
Tokens7
X-Ray8
Key9
Token XENC File10
5
PII1
6
Lab
Patient ID Tokens Non-PII Data X-Ray Tokens4