![Redline RDL-3000 SC Скачать руководство пользователя страница 126](http://html.mh-extra.com/html/redline/rdl-3000-sc/rdl-3000-sc_user-manual_1429320126.webp)
RDL-3000
User Manual
70-00158-01-DRAFT
Proprietary Redline Communications © 2010
Page
126
of 142
November 25, 2010
7
Security
7.1
Overview
The Redline RDL-3000 provides a high level of security and reliability. Security features
include wireless authentication using X.509 certificates, and wireless encryption using
AES encryption. AES encryption is optional and may be purchased separately and
enabled by loading an AES-enabled options key.
7.1.1
Authentication
The RDL-3000 supports the following authentication features:
X.509 certificates for authentication
Challenge-response mechanism during the link establishment
7.1.2
Management Security
The RDL-3000 includes security mechanisms for device management.
TLS 1.0 for HTTPS for secure Web access
SSH v2 for secure command line operation
SNMP v3 with AES support
7.1.3
Data Security
The RDL-3000 includes security mechanisms that provide sender authentication and
security and integrity for data sent over the wireless interface. These features include:
Wireless speed encryption/decryption for data traffic
Messages encrypted and validated using AES in CCM (Counter with Cipher Block
Chaining-Message Authentication Code)
Key derivation with separate keys for data traffic and key transport:
Diffie-Hellman for key establishment
AES Wrap algorithm for key transport
Keys changed at random intervals
AES (Advanced Encryption Standard) option is an encryption standard used worldwide
to protect sensitive information. The AES cryptographic cipher uses a block length of
128 bits and key lengths of 128, 192 or 256 bits. As used in the United States, AES is a
Federal Information Processing Standard (FIPS), specifically, FIPS Publication 197, that
specifies a cryptographic algorithm for use by U.S. Government organizations to protect
sensitive, information. The AES block cipher has been ratified as a standard by National
Institute of Standards and Technology of the United States (NIST).
7.1.4
Physical Security
The Redline RDL-3000 is enclosed in a weatherproof aluminum alloy case. The
module’s enclosure is sealed using tamper-evident labels, which prevent the case
covers from being removed without signs of tampering.
The security of the RDL-3000 system is further increased by the following factors:
Chapter 7