About R&S
Trusted
Disk
9
Administration manual 4603.7988.02 ─ 03
2
About R&S
Trusted
Disk
R&S
Trusted
Disk is a full-disk encryption solution that encrypts user data, the operat-
ing system and any temporary data. It uses a transparent real-time encryption method
that ensures a smoothly running workstation. Pre-boot authentication secures the
workstation from unauthorized access. To boot up a workstation, users have to identify
themselves by connecting a smart card and entering a PIN.
R&S
Trusted
Disk was developed based on BSI standards, including up-to-date ran-
dom number generation and flexible rekeying to ensure high-level security.
Contents
.................................................................................................9
2.1
Key security features
●
Central management and user authentication using smart cards
●
Use of algorithms AES-XTS-512 for encryption and SHA-2 512 for hashing
●
Support of RSA 2048-bit, 3072-bit and 4096-bit
●
Fulfillment of compliance requirements based on audit logs in authorization
changes
●
Approval to handle VS-NfD, RESTRICTED (BSI), EU RESTRICTED and NATO
RESTRICTED classified information
●
Support of UEFI Secure Boot
●
Support of internal and external storage devices
2.2
Scope of delivery
The following software packages are delivered with R&S
Trusted
Disk:
Name
Filename
Description
Microsoft
Visual
C+
+
Redistributable
vc_redist.x64 VS2017.exe
vc_redist.x86 VS2017.exe
Dependency that con-
tains a library of com-
ponents required to
run CardOS API and
R&S
Trusted
Disk
CardOS API
CardOS_API_Setup.exe
CardOS_API_Setup_x64.exe
Middleware for
R&S
Trusted
Disk and
CardOS smart cards
to communicate
R&S
TD
Crypto-
Helper
R&S TDCryptoHelper Setup X.X.X-VS-NfD.exe
Dependency that con-
tains necessary driv-
ers and program files
Scope of delivery