Defence Signals Directorate Reveal their secrets....Protect our own

SanDisk Cruzer Enterprise FIPS edition : Data Protection

SanDisk Cruzer Enterprise FIPS Edition

Version: 6.612 and 6.615

 

Product Type: Data Protection

Assurance Level: EAL 2

CC Scheme: AISEP

Evaluation Facility: Stratsec

Manufacturer: SanDisk

Dealer: Tudor Technology,
Level 23 Tower 1 520 Oxford St Bondi Junction NSW 2022, Sydney Australia.

Contact: Anton Goldman
Email: agoldman@tudortech.com.au

Phone: +61 (2) 8221 9560
Fax: +61 (0) 404912 722
Web: www.tudortech.com.au, www.tudortech.asia



Cruzer Enterprise FIPS Edition is a security product that caters to the security requirements of government agencies and financial institutions. It is principally an encrypted USB flash drive used for securely storing files on a portable media.

Instead of relying on end users to secure individual files on their own discretion, the SanDisk Cruzer Enterprise FIPS Edition stores all files in a secure partition implementing a 256-bit hardware-based AES encryption and decryption of data on request.

Since the cryptographic key never leaves the device, it is safe from software attacks. The physical device housing the hardware and software is sealed with epoxy glue so that the cryptographic key stored on the drive is also protected from physical tampering attempts and any such attempt is visually detected by the user.

End users are authenticated with a password mechanism. If the end user is not successfully authenticated, access to the decryption function for recovering the encrypted files is denied. Several consecutive failed authentication attempts is interpreted as a password guessing attack and causes the TOE to enter a Lockdown mode. In Lockdown mode, all access requests are denied except the recovery using  the Central Management and Control (CMC) Software.