SanDisk Cruzer Enterprise FIPS edition : Data Protection
| SanDisk Cruzer Enterprise FIPS Edition Version: 6.612 and 6.615 |
|
| Product Type: Data Protection Assurance Level: EAL 2 CC Scheme: AISEP Evaluation Facility: Stratsec Manufacturer: SanDisk Dealer: Tudor Technology, Contact: Anton Goldman Phone: +61 (2) 8221 9560
|
Cruzer Enterprise FIPS Edition is a security product that caters to the security requirements of government agencies and financial institutions. It is principally an encrypted USB flash drive used for securely storing files on a portable media. Instead of relying on end users to secure individual files on their own discretion, the SanDisk Cruzer Enterprise FIPS Edition stores all files in a secure partition implementing a 256-bit hardware-based AES encryption and decryption of data on request. Since the cryptographic key never leaves the device, it is safe from software attacks. The physical device housing the hardware and software is sealed with epoxy glue so that the cryptographic key stored on the drive is also protected from physical tampering attempts and any such attempt is visually detected by the user. End users are authenticated with a password mechanism. If the end user is not successfully authenticated, access to the decryption function for recovering the encrypted files is denied. Several consecutive failed authentication attempts is interpreted as a password guessing attack and causes the TOE to enter a Lockdown mode. In Lockdown mode, all access requests are denied except the recovery using the Central Management and Control (CMC) Software. |
