• "One often hears recommendations for key-sizes of public-key cryptosystems needed to obtain security for 30 years and even 50 years. Anyone wanting a real security of this magnitude should probably take the construction of the quantum computer into consideration."

    ECRYPT, “D.PROVI.3 – First Summary Report on Unconditionally Secure Protocols”, January 2005

    Read more...
  • "Some physicists predicted that within the next 10 to 20 years quantum computers will be built that are sufficiently powerful to implement Shor’s ideas and to break all existing public key schemes. Thus we need to look ahead to a future of quantum computers, and we need to prepare the cryptographic world for that future.

    Prof Seth Lloyd of MIT, MIT Review 2008

    Read more...
  • "Many crypto-systems considered robust have been broken after a certain amount of time (between 10-20 years).  ... We need to build crypto-systems that offer long term security, for example for protecting financial and medical information (medical information such as our DNA may be sensitive information with impact on our children, our grandchildren and beyond)."

    SecurIST, “D3.3 – ICT Security & Dependability Research beyond 2010: Final Strategy”, January 2007

     

    Read more...
Home Proposals Assure SSH Exoskeleton
Synaptic Assure SSH Exoskeleton Home

Protect the SSH suite using the Assure SSH Exoskeleton!

Problem

Secure file transfers, remote computer access and point-to-point secure network tunnels are often performed using the secure shell (SSH) suite of protocols.  These protocols rely on at-risk standards based cryptography to perform key-exchange and authentication operations.  When these at-risk components fail, SSH traffic previously recorded in "wait-and-see" attacks will be discoverable at that time by an attacker.

If your organisation runs SSH to administer computers, transfer files or perform simple VPN like services, then this sensitive information may be exposed in the relatively near future!

Solution

Synaptic Labs' Assure SSH Exoskeleton will address these known risks by wrapping around and protecting SSH traffic.

Specifically, one Assure SSH Exoskeleton is placed in front of the SSH Server and another in front of the SSH Client.  The two Exoskeletons monitor the Internet facing traffic of the SSH software and protect the at risk portions of the SSH traffic using robust post quantum secure techniques.   The standards based SSH protocol is not modified, and interoperability is maintained.

For performance sensitive applications, only the cipher parts that are known today to be at risk of catastrophic failure are protected.  For applications that require long term security assurances the full range of defensive counter-measures are applied.  These defensive counter measures are designed to protect your data in the advent that the practical security of AES-256 is compromised by new attacks that have not been invented yet.

Server Deployment options

Synaptic Labs' Assure SSH Exoskeleton will be deployable as a stand-alone application that processing incoming SSH and Assure SSH traffic and relays the original SSH traffic through to the unmodified SSH server application. This is ideal for environments that wish to compartmentalise security boundaries or support SSH servers that cannot be modified.

The Assure Exoskeleton can also be integrated directly into the SSH server side applications. Synaptic will work with organisations currently implementing SSH applications to ensure the integrated Exoskeleton approach is widely available.

Client Deployment options

On the client side, Synaptic Labs' Assure SSH Exoskeleton is most efficient and scalable when integrated into the client's SSH application.

In this configuration the SSH application can automatically detect the presence of Assure SSH servers and dynamically enable the Exoskeleton functionality for that connection.  Synaptic will work with organisations currently implementing SSH applications to ensure the integrated Exoskeleton approach is widely available.

Synaptic Labs' Assure SSH Exoskeleton can also be deployed as a stand-alone application to accept connections on the client computer and forward them to pre-configured remote network destination. This is suitable for back-office production environments where one computer communicates with a predefined number of other computers.

A smart card based solution

The Assure SSH Exoskeleton employs Assure smart card Tokens on the client and server side to achieve unprecedented levels of long-term security assurance at low cost, protecting an organisation's information assets and their investments through the application of Synaptic Labs' post quantum security technologies.

Last Updated on Friday, 12 June 2009 14:43