Ravlin 10

Wireline Performance Encryption Speeds for Ethernet Networks

The RedCreek Ravlin 10/5100 is a cost-effective network security solution that performs encryption and decryption with a throughput of the theoretical maximum of Ethernet (or "wire" speed). Network administrators use it to establish private communications within secure intranets (between corporate divisions, workgroups, branch offices, and individuals) or within secure extranets (between customers, suppliers, and strategic partners.) Its low cost allows organizations to establish security over private or public IP networks quickly and easily.

The Ravlin10/5100 provides data privacy using industry-standard 56-bit DES and 168-bit Triple DES encryption. Authentication and access control are provided using DSS (Digital Signature Standard), Diffie-Hellman key exchange, X.509 v.3 digital certificates, and ISAKMP/Oakley key management. These security standards are part of the Internet Engineering Task Force (IETF) IP Security Standard (IPSec). The Ravlin10/5100 maintains the theoretical maximum of Ethernet (or "wire" speed) through the use of RedCreek CryptoCore™ technology.

The Ravlin10/5100 supports RavlinSoft Clients running on Windows 95/98 and Windows NT 4.0 systems, allowing remote communications over public and private networks. The Ravlin 10 supports Strong RADIUS user authentication for standard remote software. Ravlin RADIUS Authentication provides interoperability with user authentication hardware tokens that have standard RADIUS interfaces.

The Ravlin10/5100 firmware has all mandatory components of the Internet Engineering Task Force (IETF) IP Security Standard (IPSec) for enhanced network security.

Features and Benefits

IP Security Standard (IPSec)
IPSec is the most secure and comprehensive standard available today for encryption, authentication, key management, and anti-replay services.

IPSec protocol interoperability lets Ravlin products exchange keys and encrypted communications with all other IPSec-compliant products, so customers can use different IPSec vendors for multiple scenarios. RedCreek can provide a list of IPSec interoperability partners upon request.

The Ravlin10/5100 firmware supports the strongest suite of IPSec network security enforcement features available today. Using Ravlin Node Manager, the Ravlin10/5100 firmware gives the network administrator or security manager a choice of several secure VPN operational modes.

ESP (Encapsulating Security Payload) Tunnel Mode
ESP Tunnel mode provides the highest level of security between gateways. The original IP datagram is encapsulated in a new IP packet using a new IP address as the source/destination of the packet. ESP Tunnel mode uses 40-bit/56-bit DES or 168-bit Triple DES encryption.

ESP (Encapsulating Security Payload) Transport Mode
In ESP Transport mode, only the payload of the original IP datagram is encrypted. Like ESP Tunnel mode, ESP Transport mode uses 56-bit DES or 168-bit Triple DES. Ravlin10/5100 units also support Authentication Header (AH) Transport mode and Authentication Header (AH) Tunnel mode, which use strong authentication and anti-replay to secure IP datagrams without encrypting the data payload. ESP Transport mode uses hashing methods to ensure that the data stream is not modified.

Encrypt-in-Place (EIP) Mode
In EIP mode, only the payloads of IP datagrams are encrypted. Like ESP mode, EIP mode can use 56-bit DES or 168-bit Triple DES. EIP mode is a RedCreek proprietary secure VPN technology. Although EIP mode is not part of the IPSec standard, it combines high speed with all levels of encryption.

Anti-Replay Service and Use of Unique X.509 v.3 Certificates
Ravlin10/5100 uses IPSec anti-replay services to ensure that rogue packets cannot be inserted into a Ravlin-protected data stream. With anti-replay service, each IP datagram passing within the secure association is tagged with a sequence number. On the receiving end, the datagram is blocked if its sequence number does not fall within a pre-specified range of sequence numbers.

Fast Encryption: Wireline Performance without Network Degradation
Third-party tested and validated at encryption/decryption speeds of 100% of media throughput for all packet sizes.

Ease of Implementation and Administration

Standards-Based Security/Management

Interoperability

Low Cost of Ownership

Customer Support/Service
RedCreek Communications, Inc. believes that customer advocacy and support are critical to our success. Because of this belief, we offer innovative support programs to assist with installation and configuration of Ravlin products. Traditional technical assistance and support are provided by RedCreek's Customer Support Center. Please reference our Customer Support link.

Ravlin10/5100 Technical Specifications

 

home | search | products | services | research | company | partners | downloads | contact
Please contact our Webmaster with any questions or comments.
Copyright 1999, 2000, 2001 I.D.T., Inc.. All rights reserved.