A-6
Cisco Secure Desktop Configuration Guide
OL-8607-02
Appendix A Frequently Asked Questions
Networking and Firewall Questions
•
Microsoft VM > Java permissions > High, medium or low safety
What kind of encryption do the Secure Desktop and Cache Cleaner use?
CSD encrypts data with 168-bit 3DES. Erasure of the cache meets U.S. Department of Defense
standards.
Data Encryption Standard (DES) is an algorithm for protecting data using private encryption keys.
DES-CBC is the Cipher Block Chaining (CBC) mode of DES, a stronger form of encryption; it applies
an exclusive OR to each block of data with the previous block and then encrypts the data using the DES
encryption key. 3DES or Triple DES, the strongest form of encryption, uses different keys to encrypt
each data block three times.
How long can the password be for Vault reuse?
The password can be up to 127 characters, and can include any combination of upper and lower case
letters, plus numbers and punctuation symbols, including spaces.
What happens when the cache is cleaned, either by the Cache Cleaner or the
Secure Desktop?
The Cache Cleaner or the Secure Desktop sanitizes the system, disabling or erasing all data that was
downloaded, inserted, or created in the browser including file downloads, configuration changes, cached
browser information, entered passwords, and auto-completed information.
Networking and Firewall Questions
The following questions address networking aspects of the Secure Desktop and the Cache Cleaner, and
their interaction with personal firewalls such as Sygate Security Agent and Sygate Personal Firewall:
Does the Secure Desktop or Cache Cleaner detect a second network card for
location determination?
No, they detect only the IP address of the first network card.
I am using a personal firewall. What application must I “Allow” to access the
network?
You must allow the program main.exe to access the network.