SafeNet provides complete security utilizing its encryption technologies to protect communications, intellectual property and digital identities, and offers a full spectrum of products including hardware, software, and chips.

SafeNet technology is the de facto standard in remote access client software and the market leader in USB authentication tokens that eliminate user names and passwords; SSL acceleration devices providing fast and secure online transactions; software security, and licensing products preventing software piracy; high-assurance security products; and SecureIP Technology licensed to Internet infrastructure manufacturers, service providers, and security vendors.

1. Application & Transaction Security (HSM)

SafeNet Hardware Security Modules (HSMs) provide reliable protection for applications, transactions and information assets by securing cryptographic keys. SafeNet HSMs are the fastest, most secure, and easiest to integrate application security solution for enterprise and government organizations to achieve regulatory compliance, reduce the risk of legal liability, and improve profitability.

1.1. General Purpose - Embedded HSMs

SafeNet embedded HSMs are designed for tight integration between an application server and the HSM. Sensitive data is protected cost-effectively, and business processes are uninterrupted, making SafeNet embedded HSMs the highest performance solution in the market for the protection of cryptographic keys.

1.1.1. Luna CA4 HSM

Maintain PKI Integrity
The SafeNet Luna CA4 addresses the security and operational needs required to maintain the integrity of PKIs with true hardware key management, trusted path multi-person authentication, and direct hardware-to-hardware backup.

Optimal Root Key Protection
The SafeNet Luna CA4 offers the strictest hardware security for Certificate Authorities (CAs) issuing digital identities in PKIs. Luna CA4 protects the PKI root key and performs all key management, key storage, and key operations (such as digital signing) exclusively within hardware.
Brochure >>

1.1.2. Luna PCI / PCI-E

Dedicated Hardware-Based Key Management
SafeNet Luna PCI-E, are designed to protect cryptographic keys and accelerate sensitive cryptographic operations across a wide range of security applications. Luna PCI-E offer dedicated hardware-based key management to protect sensitive cryptographic keys from attack.

  • Hardware-secured key generation and storage
  • FIPS 140-2 Level 3 validated
  • Secure key backup
  • Accelerated encryption
  • Range of models and configurations, offering a wide selection of security, performance, and operational capabilities
Brochure >>

1.1.3. Luna PCM

The Luna PCM HSM family offers low-cost portability, coupled with hardware-accelerated cryptographic performance to protect digital credentials for sensitive application access.

Dedicated Hardware Key Protection
The Luna PCM HSM family offers dedicated hardware key management to protect sensitive cryptographic keys from attack. The high-security hardware design ensures the integrity and protection of encryption keys throughout their life cycle.
Brochure >>

1.1.4. Protect Server Gold & ProtectServer Internal-Express

Wide Range of Cryptographic Processing
ProtectServer HSMs provide secure storage and a dedicated cryptographic processor to delivery high-speed processing for cryptographic operations and transaction speeds. Both offer a wide range of cryptographic services, including:

  • Encryption
  • User and data authentication
  • Message integrity
  • Secure key storage and key management for eCommerce
  • PKI
  • Document management
  • Electronic Bill Presentation and Payment
  • Database encryption
  • Financial EFT transactions, and more

Extensive APIs
Users and developers can facilitate seamless integration of cryptography and HSMs into a large array of pre-integrated third-party solutions or custom applications. The Customization Software Development Kit (ProtectProcessing) enables the development, download, and storage of custom-specific functionality modules (FMs) inside the secure boundary of the HSM.
Brochure >>

1.2. General Purpose - Network Attached HSMs

When the hardware security module (HSM) needs to be shared between a number of application servers, SafeNet network-attached HSMs safeguard the cryptographic keys used to secure transactions, applications, and sensitive data.

1.2.1. Luna SA

Luna SA is the choice for enterprises requiring strong cryptographic security for paper-to-digital initiatives, digital signatures, DNSSEC, hardware key storage, transactional acceleration, certificate signing, code or document signing, bulk key generation, data encryption, and more.

Scalable Security for Virtual and Cloud Environments

  • Virtual Platform Support – vSphere, Microsoft Hyper-V, and Citrix XenServer
  • Digital Certificate Authentication

Market Leading Performance

  • The only HSM on the market that delivers high performance implementations for the full range of Suite B cryptographic algorithms
  • First HSM to integrate with Microsoft SQL Server 2008 & integration with SQL Server 2008 R2
  • Cryptographic acceleration up to 6,000 1024-bit RSA tps; 400 384-bit ECC tps
Brochure >>

1.2.2. Luna SP

The SafeNet Luna SP allows developers to securely deploy Web applications, Web services, and other Java applications in a protected, hardened security appliance. Enterprises deploying security applications can streamline development processes, eliminate hardware duplication, and reduce ongoing operational costs with Luna SP.
Brochure >>

1.2.3. Luna XML

SafeNet Luna XML is designed to secure next-generation XML Web services and Service-oriented Architectures (SOAs). Other HSMs take months to integrate with new applications due to complex security APIs. Luna XML has a zero footprint on the host application server, providing for rapid, independent, flexible, and highly scalable deployments.
Brochure >>

1.2.4. Protect Server External

The SafeNet ProtectServer External is a network-attached HSM that connects via TCP/IP to a single machine or complete network (LAN) to perform as a central cryptographic subsystem for delivery of symmetric and asymmetric cryptographic services. All operations that would otherwise be performed on insecure servers are securely processed within the HSM, ensuring that sensitive keys are always protected from compromise.
Brochure >>

1.2.5. Luna G5

Luna G5 delivers industry-leading key management in a portable appliance. All key materials are maintained exclusively within the confines of the hardware. The small form-factor and on-board key storage sets the product apart, making it especially attractive to customers who need to physically remove and store the appliance that holds their PKI root keys.
Brochure >>

1.2.6. Luna SX

The SafeNet Luna SX is a central management console for rapid HSM setup and easy remote administration for the SafeNet Luna SA and Luna SP. Using simple GUI, SafeNet HSMs can be managed remotely and securely.
Brochure >>

1.3. General Purpose - Payment HSMs

For over 25 years, SafeNet's products have protected and secured transactions around the world. SafeNet HSMs provide powerful end-to-end security for online banking transactions and applications for credit, debit, and chip cards.

1.3.1. Luna EFT

SafeNet Luna EFT is designed for Electronic Funds Transfer (EFT) and payment system processing environments, providing powerful end-to-end security for online banking transactions and applications for credit, debit, and chip cards. Unlike traditional online applications that use SSL, Luna EFT encrypts data at the client's browser and decrypts at the host, so the transaction remains secure from point of entry through processing and X authentication.
Brochure >>

1.3.2. ViewPIN+

SafeNet ViewPIN+ fully automates the issuance and delivery processes for personal identification numbers (PINs). The only solution of its kind on the market, ViewPIN+ is designed to cut costs, prevent PIN fraud, and improve customer satisfaction for card issuers in the retail, banking, and telecom industries.
Brochure >>

Validations and Certifications

SafeNet Hardware Security Modules (HSMs) provide reliable protection against compromise for applications and information assets to ensure regulatory compliance, reduce the risk of legal liability, and improve profitability. SafeNet's robust FIPS and Common Criteria validated HSM solutions are tamper resistant and offer the highest level of security.

FIPS

Please refer to the table below for a list of all SafeNet HSMs that are validated to FIPS 140-1 and 140-2. To see SafeNet HSMs listed on the NIST website, follow: Click Here

Common Criteria (CC)

A broad portfolio of SafeNet products have been awarded Common Criteria certification for meeting the security requirements defined by the Common Criteria for Information Technology Security Evaluation.

2. Content Security (eSafe)

eSafe provides content security, data control, and data leak prevention (DLP) solutions for incoming and outgoing Internet traffic through the edge of the network, including web surfing (web security gateway) and messaging (mail security gateway).

eSafe consists of the following:

  • eSafe Web Security Gateway
  • eSafe Email Security Gateway

eSafe Modules:

  • Security (Includes Anti-Malware, Anti-Spyware, and Anti-Virus)
  • Application and Web 2.0 Control (Includes AppliFilter)
  • Data Leak Prevention (DLP)
  • Content Filtering (Includes URL Filtering)
  • SSL Inspection
  • Anti-Spam (Includes Anti-Phishing)
  • eSafe Management and Reporting
  • eSafe Delivery
Brochure >>

3. Identity & Access Management (Multi Factor Authentication)

SafeNet's wide range of multi-factor strong authentication solutions ensure that only authorized individuals access your organization's sensitive information – enabling business, protecting your data, lowering IT costs, and boosting user productivity.
With SafeNet's authentication solutions, you can strengthen VPN security for remote access, protect data on laptops and PCs, enhance network access security, simplify password management and protection with the industry's broadest range of authenticators, management platforms and security applications.

3.1. Certificate Based Smart Cards

SafeNet's certificate-based smart cards meet the highest security standards including FIPS 140-2 and Common Criteria, and enable compliance with security regulations including HIPAA, HSPD-12, SOX, GLBA, FFIEC, Basel II, PCI and HITECH.

3.1.1. eToken PRO Smart Cards

The eToken PRO Smartcard is a certificate-based strong authentication solution that enables strong user authentication, password management, secure digital signatures, and data security solutions.
Brochure >>

3.1.2. Smart Card 400

Built with the most powerful cryptographic technology available, SafeNet 400 Smart Card allows more functionality, and allows for a higher level of security. These new cards provide 64K of memory for storage of key material, have the flexibility to integrate with hundreds of applications and products from leading vendors.
Brochure >>

3.1.3. Smart Card 330

SafeNet 330 Smart Card provides both functionality, and the highest levels of security. With 32K of memory for storage of key material, SafeNet 330 Smart Card has the flexibility to integrate with hundreds of applications.
Brochure >>

3.1.4. Smart Card 330g

Smart Card 330g meets the GSC IS native card edge interface requirements. The GSC IS smart card interoperability specification ensures "any card, any software" operation.

3.1.5. Smart Card 330i

Financial institutions and their customers that are deploying the Identrus system for securing B2B e-commerce can take advantage of the SafeNet 330i smart card which is fully IdenTrust compliant. IdenTrust digital signatures using the IdenTrust signing key take place on the smart card for each transaction. PIN verification also is processed on-card for each transaction.

3.1.6. Smart Card 330m

The Smartcard 330m is SafeNet's biometric enabled smart card, designed for customers that want an extra level of identity certainty and the convenience of using a fingerprint for authentication to corporate applications. SafeNet's Smartcard 330m features Precise Biometrics Match.

3.1.7. Smart Card 330u

SafeNet's Smart Card 330u cryptographic smart card is a file system card with an embedded microcontroller that contains SafeNet's SCCOS (SafeNet Cryptographic Card Operating System) operating system and allows users to unlock their cards after too many unsuccessful login attempts.

3.2. Certificate Based USB Authenticators

SafeNet's certificate-based USB authenticators enable secure remote access as well as other advanced applications including digital signing, password management, network logon and combined physical/logical access in a single device.

3.2.1. eToken PRO

eToken PRO is a USB-based authenticator that provides strong user authentication and cost-effective password management. With this two-factor authentication solution, organizations can easily and effectively expand business opportunities by providing secure network access, improve data security through enhanced encryption and digital signing, and reduce costs and vulnerabilities through superior password management.
Brochure >>

3.2.2. eToken PRO Anywhere

eToken PRO Anywhere is the industry's first clientless smartcard USB authentication device, combining the strength of certificate-based strong authentication with the simplicity and mobility of OTP.
Brochure >>

3.2.3. iKey 4000 USB Token

The iKey 4000 is a USB-based multi-factor authenticator with optional match-on-card biometric functionality. It provides secure PKI, multi-factor authentication for remote access, verification, signing, and encryption.
Brochure >>

3.2.4. iKey 2032 USB Token

The SafeNet iKey 2032 is a portable USB-based PKI authenticator that generates and stores private keys and digital certificates on a 32KB storage crypto device small enough to fit on a key chain. iKey 2032's compact and rugged, tamper resistant construction make it easy for the user to carry digital IDs.
Brochure >>

3.3. OTP Authenticators

SafeNet OTP authentication solutions are available as part of our SafeWord 2008 out-of-the-box solution packs which allow organizations to set up remote access solutions for employees and partners in a matter of minutes. SafeWord 2008 integrates seamlessly with Microsoft Active Directory as well as with all the leading VPN providers and Citrix applications.

• SafeWord 2008 OTP Authenticators

With the push of a button, SafeWord authenticators generate a highly secure, one-time password that can never be re-used, hacked, or otherwise compromised. The SafeWord password provides a secure two-factor authentication mechanism that ensures that only properly authenticated users are authorized access to critical applications and data. SafeWord offers a set of authenticator options, including hardware authenticators and MobilePASS software authenticators.
Brochure >>

3.3.1. eToken PASS

eToken PASS is a compact and portable one-time password (OTP) authenticator, providing strong user authentication to network resources. eToken PASS is OATH compliant and supports a variety of security solutions including strong authentication to both web-based and client-based applications.
Brochure >>

3.3.2. Gold

Gold authenticators offer a high level of OTP security. Users activate the authenticator on the keypad with a personal identification number (PIN), which prompts the authenticator to provide a one-time, dynamic password. Users then enter their unique password into the Web or network application to perform authentication.
Brochure >>

3.3.3. MobilePASS

MobilePASS combines the security of proven two-factor authentication with the convenience of one-time passcodes generated on personal mobile devices or PCs. MobilePASS is an authentication solution that generates one-time passcodes on Windows desktops and on a variety of popular mobile phone platforms, including iPhone, BlackBerry, Android, Windows Mobile, and Java 2ME-enabled devices. MobilePASS also offers OOB authentication through the delivery of one-time passwords via SMS to mobile devices.

4. Data Encryption & Control

SafeNet DataSecure appliances are at the heart of all SafeNet data encryption and control solutions- offering comprehensive security to organizations of all sizes. Additionally, Token Manager offers tokenization capabilities and EdgeSecure offers protection for remote sites.

4.1. DataSecure

For the most demanding processing environments, DataSecure offers the highest level of database and application security available. It features breakthrough performance, high availability, and streamlined implementation.
Brochure >>

4.2. EdgeSecure

EdgeSecure enables organizations to encrypt sensitive data in hundreds or even thousands of remote locations, and to do so with unprecedented efficiency and cost effectiveness. When combined with DataSecure appliances, the result is a streamlined, centralized management model for deploying encryption across geographically distributed locations.
Brochure >>

4.3. Tokenization Manager

Tokenization Manager can be employed for online credit card transactions or transmission of other sensitive data. SafeNet Tokenization works by replacing sensitive data with tokens that preserve information formats so you can protect multiple types of data without affecting critical IT components. Tokenization also helps simplify audit compliance by reducing audit scope.
Brochure >>

5. High-Speed Network Encryption & VPN

Proven reliability, highest throughput, and lowest latency make SafeNet's network security devices the ideal solution for protecting data in motion, including time-sensitive voice and video streams. SafeNet's complete family of network security devices provides the fastest and easiest way to integrate robust, FIPS-certified network security to protect data for enterprise and government organizations.

5.1. Ethernet Encryption

SafeNet is the world's only provider of a complete portfolio of Ethernet security solutions-from 10 Gbps network encryption appliances for enterprise, telecommunications, and government organizations to embedded security systems for network equipment manufacturers.
Brochure >>

Ethernet Encryptor 10G Product Highlights

  • Proven compliance through layer 2 encryption
  • Best-in-class Ethernet encryption
  • Central Policy Management
  • Ease of integration

Ethernet Encryptor 1G Product Highlights

  • Full-duplex line-rate encryption of Ethernet networks up to 1 Gbps
  • Standards-based authentication, digital certificates, and key management
  • Bump-in-the-wire design for easy installation into existing network environments
  • Central configuration, monitoring, and management through SafeNet Security Management Center (SMC)

5.2. HighAssurance Remote

FIPS 140-2 Level 2 certified technology and the foundation of the industry's clear standard for VPN software, HA Remote client is an industry-proven VPN software solution that provides secure client-to-client or client-to-gateway communications over wireless LANs, TCP/IP networks, and dial-up connections.

6. Disk and File Encryption

With SafeNet ProtectFile, you can secure critical, unstructured data located on the broadest range of endpoint devices, including desktops, laptops, mobile devices, and removable media. Administrators can enforce encryption for particular files and folders or entire disk drives while end users can choose to protect specific data. And SafeNet ProtectDrive offers full disk encryption capabilities.

6.1. ProtectDrive

ProtectDrive is a full disk encryption solution that encrypts the entire hard drive of laptops, workstations and servers, as well as USB flash drives, to protect data in the case of the theft or loss of a hardware device. SafeNet's ProtectDrive received a perfect 5 Star rating from SC magazine.
Brochure >>

6.2. ProtectFile

SafeNet ProtectFile software enables you to secure the unstructured data residing in data center or on endpoint devices. Working with a SafeNet DataSecure appliance, ProtectFile encrypts data and controls access to sensitive folders and files kept on the hard drives of local and remote servers, network drives, and file servers. ProtectFile Portable enable user-drivien encryption.
Brochure >>