Secure File Transfer (Diod)

Traceability and authenticity

In the digital society, growing data protection needs arise from increased information volume and network interconnection. Security challenges include ensuring the right recipient accesses information at the right time and automating transfers between systems. Introducing new data into sensitive environments requires verifying sender and recipient, authorization, integrity, traceability, and content, while preventing reverse data flow. A data diode, often a hardware device, ensures one-way information flow and can filter out unwanted data. This system supports importing into high-sensitivity domains and exporting to lower-sensitivity environments, maintaining traceability and authenticity (IMPEX).

Description

To ensure that your information is secure, to prevent malicious or incorrect information from entering the environment, or to prevent access and data leakage from a zone with higher security, you can use Combitech's Secure File Transfer. Implementations with diodes provide optical separation between nodes in the system and ensure that data can only be transported in one direction.

Combitech's Secure File Transfer is available in several different configurations. Ranging from data pumps where information is transported over an optical diode, without control of sender, receiver, or content.

Typically for sensor data, logs from a production system, etc., to a multi-zone configuration where data is transported over optical diodes, with filter functions and switches where recipients in several different zones can be addressed.

Combitech Secure File Transfer has built-in support for antivirus. A number of content and extension filters are included. The platform supports creating multiple customized filters as well as "White and Black-listing". The clients are completely operating system independent.

Modules

Data Pump Diode - The simplest form of diode. Transport of data between two zones over an optical diode, without control of sender, receiver, or content.

Dual Zone - Configuration with filter and diode (two zones). Upload and download client between two zones.

Multi Zone - Configuration with filter and diode (three or more zones). Sending information to several different zones or information domains.

Automation - Create automatic flows.

Air-Gap configuration - Physically separate zones with manual export/import by operator.

Authentication

  • Username and password
  • Smart Card

User Directories

  • OpenLDAP
  • Windows AD

Per Westerberg

Business Unit Manager, Secure Solutions

per.westerberg@combitech.com

+46 (0)73 43 75 584