Secure Systems

 

COMSEC
In Communications Security, safeguards are described in terms of the security services provided by BESTEQ. The five basic security services provided by BESTEQ are:

  1. Authentication - BESTEQ provides authentication using smart cards and access request filtering. With the use of smart cards and biometrics, we can create a high probability of identifying that the individual carrying the card is the authentic owner of the card.
  2. Access control - BESTEQ uses several techniques to provide access control, such as smart cards, password protection, access request filtering, and access matrixes and then enforces those access controls.
  3. Confidentiality - BESTEQ ensures confidentiality through both an access control approach and an information-hiding approach. BESTEQ uses information hiding when no reliable form of access control to information can be assumed.
  4. Data integrity - These services are safeguards against the threat that the value or existence of data might be changed in a way inconsistent with the recognized security policy, e.g., the data might be deliberately altered during transmission. BESTEQ employs mechanisms such as DES or PKI encryption.
  5. Non-repudiation - Many problems can occur in the handling and transmission of documents. The primary purpose of non-repudiation is to systematically aid in dealing with these problems by employing various mechanisms. BESTEQ provides solutions that ensure non-repudiation of the origin of a document and non-repudiation of the delivery of a document through such sophisticated techniques as electronic signature, countersignature, and receipts.

COMSEC can also include the latest security features for Internet security. IPSec is a security standard defined by the Internet Engineering Task Force (IETF). BESTEQ uses IPSec encryption standard software to encode data to be transmitted over the Internet. BESTEQ’s applications for IPSec include firewalls, specialized encryptors, routers, remote access servers, and switches that provide LAN and WAN connectivity.