翻訳と辞書
Words near each other
・ "O" Is for Outlaw
・ "O"-Jung.Ban.Hap.
・ "Ode-to-Napoleon" hexachord
・ "Oh Yeah!" Live
・ "Our Contemporary" regional art exhibition (Leningrad, 1975)
・ "P" Is for Peril
・ "Pimpernel" Smith
・ "Polish death camp" controversy
・ "Pro knigi" ("About books")
・ "Prosopa" Greek Television Awards
・ "Pussy Cats" Starring the Walkmen
・ "Q" Is for Quarry
・ "R" Is for Ricochet
・ "R" The King (2016 film)
・ "Rags" Ragland
・ ! (album)
・ ! (disambiguation)
・ !!
・ !!!
・ !!! (album)
・ !!Destroy-Oh-Boy!!
・ !Action Pact!
・ !Arriba! La Pachanga
・ !Hero
・ !Hero (album)
・ !Kung language
・ !Oka Tokat
・ !PAUS3
・ !T.O.O.H.!
・ !Women Art Revolution


Dictionary Lists
翻訳と辞書 辞書検索 [ 開発暫定版 ]
スポンサード リンク

HAIPE-IS : ウィキペディア英語版
High Assurance Internet Protocol Encryptor

A High Assurance Internet Protocol Encryptor (HAIPE) is a Type 1 encryption device that complies with the National Security Agency's HAIPE IS (formerly the HAIPIS, the High Assurance Internet Protocol Interoperability Specification). The cryptography used is Suite A and Suite B, also specified by the NSA as part of the Cryptographic Modernization Program. HAIPE IS is based on IPsec with additional restrictions and enhancements. One of these enhancements includes the ability to encrypt multicast data using a "preplaced key" (see definition in List of cryptographic key types). This requires loading the same key on all HAIPE devices that will participate in the multicast session in advance of data transmission. A HAIPE is typically a secure gateway that allows two enclaves to exchange data over an untrusted or lower-classification network.
Examples of HAIPE devices include:
* L-3 Communications' HAIPE 〔(L-3 Common HAIPE Manager )〕
*
* KG-245X 10Gbit/s (HAIPE IS v3.0.2),
*
* KG-245A fully tactical 1 Gbit/s (HAIPE IS v3.1.2 and Foreign Interoperable)
*
* KG-240A fully ruggedized 100 Mbit/s (HAIPE IS v3.1.2 and Foreign Interoperable)
*
* KOV-26 TALON 〔(L-3 Talon )〕
* ViaSat's AltaSec Products〔(ViaSat Information Assurance web page )〕
*
* KG-250,〔(ViaSat KG-250 )〕 and
*
* KG-255 (Gbit/s )〔(ViaSat KG-255 )〕
* General Dynamics' TACLANE KG-175〔(General Dynamics TACLANE Encryptor (KG-175) )〕
*Airbus Defence & Space ECTOCRYP Transparent Cryptography 〔(Ectocrypt Blue by Cassidian, an EADS Company )〕〔(【引用サイトリンク】title=CASSIDIAN unveils ECTOCRYP YELLOW )
Three of these devices are compliant to the HAIPE IS v3.0.2 specification while the remaining devices use the HAIPE IS version 1.3.5, which has a couple of notable limitations: no support for routing protocols or open network management.
A HAIPE is an IP encryption device, looking up the destination IP address of a packet in its internal Security Association Database (SAD) and picking the encrypted tunnel based on the appropriate entry. For new communications, HAIPEs use the internal Security Policy Database (SPD) to set up new tunnels with the appropriate algorithms and settings. By not supporting routing protocols the HAIPEs must be preprogrammed with static routes and cannot adjust to changing network topology. While manufacturers support centralized management of their devices through proprietary software,〔(ViaSat's VINE website )〕〔(General Dynamics's GEM website )〕 the current devices offer no management functionality through open protocols or standards.
(TELEGRID Technologies )〔(TELEGRID Technologies )〕 produces a non proprietary Encryptor Management System for multiple INE, HAIPE and Mobile IP encryptors including the KIV-7M, GD KG-175D, ViaSat KG-250 and Harris SecNet54. The Encryptor Management System is known as the Secure Multi-web Remoting Tool (SMRT).〔(TELEGRID SMRT Multiple HAIPE Remote Manager )〕 The SMRT provides an encryptor management interface as well as a common crypto MIB for remote management via SNMP. It also provides secure remote access to the management interfaces of the underlying encryptors.
Both the HAIPE IS v3 management and HAIPE device implementations are required to be compliant to the HAIPE IS version 3.0 common MIBs. Assurance of cross vendor interoperability may require additional effort. An example of a management application that supports HAIPE IS v3 is the L-3 Common HAIPE Manager.
A couple of new HAIPE devices will combine the functionality of a router and encryptor when HAIPE IS version 3.0 is approved. General Dynamics has completed its TACLANE version (KG-175R), which house both a red and a black Cisco router, and both ViaSat and L-3 Communications are coming out with a line of network encryptors at version 3.0 and above. Cisco is partnering with Harris Corporation to propose a solution called SWAT1〔(Cisco Harris SWAT1 Solution )〕
There is a UK HAIPE variant that implements UKEO algorithms in place of US Suite A. Cassidian has entered the HAIPE market in the UK with its Ectocryp range. Ectocryp Blue is HAIPE version 3.0 compliant and provides a number of the HAIPE extensions as well as support for network quality of service (QoS). Harris has also entered the UK HAIPE market with the BID/2370 End Cryptographic Unit (ECU).〔(Harris UK BID/2370 ECU )〕
In addition to site encryptors HAIPE is also being inserted into client devices that provide both wired and wireless capabilities. Examples of these include L-3 Communication's KOV-26 Talon and Guardian SME-PED, and Harris Corporation's KIV-54 〔(Harris KIV-54 (SECNET 54) )〕 and PRC-117G 〔(Harris AN/PRC-117G )〕 radio.
==See also==

*NSA encryption systems

抄文引用元・出典: フリー百科事典『 ウィキペディア(Wikipedia)
ウィキペディアで「High Assurance Internet Protocol Encryptor」の詳細全文を読む



スポンサード リンク
翻訳と辞書 : 翻訳のためのインターネットリソース

Copyright(C) kotoba.ne.jp 1997-2016. All Rights Reserved.