Integrius is Secure by Design

Integrius is built to handle all current security threats as well as remaining secure in the future. This is achieved by using proven technology and a modular design.

The increased usage of mobile Internet access in addition to more and more information being transferred puts the users at great risk. Today a malicious attacker can easily setup a rogue access point, tricking mobile users into using it or attack an open wireless access point. The attacker could then eavesdrop the users and gain access to sensitive information, passwords, business secrets or personal information.

Integrius secure service platform works out of the box, bringing strong encryption to all Internet applications and services without configuration. The personal integrity of the user and the information being transferred is protected from attackers.

Supports multiple legislations

Algorithms are dynamically selected to comply with national legislations while keeping optimum security. This is done transparently and does not require any configuration. Key escrow and recovery can be enabled when required by law.

Hardware security

All the Integrius servers in the platform are sealed servers making them extremely secure against manipulation. There is no local or remote possibility to log on to the servers.

The system is read-only and no modification is possible. This leads to robust predictable behavior. Firmware is stored on encrypted media that requires strong two-factor authentication to unlock.

Supported algorithms

Encryption algorithms*
AES 128-256 bit adopted by the U.S. government and adopted as the Advanced Encryption Standard
Camellia 128-256 bit selected by EU NESSIE project and recommended by the Japanese CRYPTREC project
CAST5, CAST128 40-128 bit approved for Canadian government use
SMS4 128 bit part of the Chinese WAPI standard
DES, DES-X, 3DES 56-119 bit Data Encryption Standard
Blowfish 40-448 bit
Twofish 128-256 bit
Serpent 128-256 bit
Arcfour, compatible with RC4™ 40-2048 bit
IDEA™ 128 bit
Kex exchange
Diffie-Hellman, DH 768-8192 bit
PKI, Public Key Infrastructure*
RSA up to 16384 bit
DSA, DSS up to 10000 bit
Elliptic curve (ECC), ECDSA up to 661 bit
X.509 Certificates

* 128-bit encryption, 2048-bit RSA or 256-bit ECDSA is more than enough for a foreseeable future.

 
 
 
Copyright © 2009-2010 Integrius AB. Integrius® is a registered trademark of Integrius AB.