Net Overview: Truly secure networking
AEP Net: Purpose-designed IP encryption to meet stringent VPN security standards
AEP Net is
an independently assured encryptor that protects IP traffic across networks. AEP Net provides both data confidentiality and source authentication for network traffic enabling high confidence Virtual Private Network (VPN) communications. AEP's solution has a proven track record of protecting National and International classified networks.
- Enables secure networking so you can conduct unrestricted business over the internet and other open networks by protecting sensitive data to an assured standard
- Satisfies high security data separation requirements for a multitude of architectures including extranet, intranet or internet based deployments, as well as at the network interface of protected workstations
- Conforms to the chosen deployment model, due to modular design for operation and management by either the customer organization or a managed service provider
- Removes reliance on a particular underlying WAN infrastructure due to IP encryption
- Integrates seamlessly into existing IP-based networks’ infrastructures to provide VPN security
- Eliminates administration costs of routine re-keying through fully automated key management
- Eliminates administration costs of routine re-keying through fully automated key management
- Maximizes ROI by providing a highly scalable platform with flexible configuration options to evolve in line with business requirements
- Minimizes total cost of ownership with a comprehensive and sophisticated GUI-based central management software suite
- Ensures communications continuity and disaster recovery via high availability (hot standby) architectures
- Maximizes throughput via proprietary hardware acceleration, satisfying applications including encrypted VOIP and Video over IP
- 20Mbps unit rated at 18Mbps throughput (1464 byte UDP), and a 100Mbps unit (rated at 160Mbps throughput -1464 byte UDP).
- IETF IPSEC ESP tunneling mode (modified to enhance security standards) provides packet level source identification, hides private network structures, source IP address traffic volumes and prevents attacks from the public network.
- Using industry standard protocols, Net appears as a network host on public networks and router on private networks, enabling seamless integration into existing architectures.
- An IETF standard transport protocol enables the encrypted traffic to be routed across non-IP networks e.g. ATM, SMDS, Frame Relay, xDSL, ISDN, Satcom, and Radio Links.
- Net uses SHA-1, DSA, Diffie-Hellman, ISAKMP, and AES or other National Government approved algorithm sets as appropriate.
- Built-in future proofing enables easy upgrading of cryptographic and application libraries plus flexibility for changes to standards or introduction of new algorithms.
PKI Key Management and Cryptographic Network Management for AEP Net
- Net includes cryptographic network management tools – A Certification Authority, for authenticity certification, and AEP Net Policy Manager for network configuration and control.
- Allows network managers to maintain high assurance cryptographic control of network membership (including central equipment registration and certificate revocation), and manage cryptographic Closed User Groups (CUGs).
AEP Net is available in 6 versions:
| |
|
AEP Net EB20M/EB100M |
|
Based upon a hardware platform that is employed to protect highly
sensitive Government data, AEP Net EB100M and EB20M meet the
highest standards for any Commercial-Off-The-Shelf (COTS)
encryptor. |
|
| |
 |
AEP
Net ED100M |
|
Built to UK Government
Enhanced Grade standards for large-scale, public sector
networks |
|
| |
 |
AEP
Net ED20M |
|
Built to UK Government "Enhanced
Grade" standards for public sector users - employing a National
algorithm set. |
|
| |
 |
AEP
Net EC100M |
|
Built to UK Government "Baseline Grade" standards for
large-scale, public sector networks |
|
| |
|
AEP
Net EC20M |
|
Built to UK Government "Baseline
Grade" standards for public sector users - employing a Public
Domain algorithm set. |
|
| |
|
AEP Net Remote |
|
Extends the security, functions and features of AEP Net into the remote access domain. |
|
AEP Net can be deployed as an IP Security Gateway at the network
interface or at the workstation to support highly secure end-to-end
or data separation requirements.

|