Alliance AES/400
AccueilGroovy ?SolutionsNewsPartenairesContact

 

Alliance AES/400: a complete Data Security solution for the IBM iSeries.


Alliance AES Encryption provides AES encryption for sensitive data everywhere it resides on your IBM i platform:

  • Database files
  • Tapes
  • IFS files
  • Save Files
  • Reports
  • Messages

With integrated key management you can secure data on your IBM i, Windows, Linux, and UNIX applications using a common, cross-platform strategy.

You can encrypt with confidence using the only NIST certified solution for the IBM i.


FEATURES

Encryption

  • Advanced Encryption Standard (AES)
  • NIST FIPS-197 compliant
  • Key sizes: 128, 192, 256
  • Modes: ECB, CBC, CTR, OFB, CFB1 to CFB128 (All five NIST modes)

Certiication & Validation

  • NIST AES Validation
  • NIST certification on IBM System i, IBM z,Windows, Linux, UNIX Field encryption

Key Creation

  • Pass phrase based encryption (PBE)
  • Diffie-Hellman key generation
  • RNG key generation
  • Protegrity key import
  • Split-role key generation

Key Management

  • Uses NIST-certified Alliance AES Encryption for Windows

Query & Business Intelligence

  • Integration with NGS-IQ for field-level secure BI support

Access Controls

  • User access control for commands
  • User access control for APIs
  • User access control for keys
  • PowerTech Authority Broker integration

APIs

  • High level AES APIs for RPG, Cobol, etc
  • Low level AES APIs
  • DB2 file encryption commands
  • IFS file encryption commands
  • Save File encryption commands
  • Tape encryption commands
  • Create self-decrypting archive command

Whole File Encryption

  • DB2 file encryption
  • Flat file encryption
  • IFS / QNTC / NFS file encryption
  • Save file (SAVF) encryption

Field Encryption

  • Encrypt fields with AES CBC mode
  • Encrypt fields with AES CTR mode (no requirement for field expansion)
  • Encrypt fields with AES ECB mode
  • Encrypt fields with AES OFB mode
  • Encrypt bits with AES CFB1 to CFB128 mode
  • Integrated with Alliance key manager
  • Integrated with Alliance key server
  • ASCII / EBCDIC data conversion
  • Base64 and Base16 encoding
  • Data masking
  • Data masking with substitution
  • SHA hash
  • PKCS5 padding
  • User access control
  • Application program access control
  • Field level access control

Utilities

  • ASCII / EBCDIC data conversion
  • Base64 and Base16 (hex) encoding
  • Data masking
  • Counter and IV generation
  • Data hash
  • PKCS5 padding
  • Triple DES

Compliance Logging

  • Selective decryption logging
  • Selective encryption logging
  • Compliance reports

Monitor & Alert

  • System audit journal (QAUDJRN)
  • SNMP trap messages
  • SMTP email notification
  • QSYSOPR message queue
  • PowerTech integration

Data Masking

  • Mask all but last 4 digits
  • Mask credit card number
  • Mask name
  • Mask address, city, state, zip code
  • Mask driver’s license
  • Mask date

Cross-Platform Support

  • Alliance AES Encryption for Windows
  • Alliance AES Encryption for Linux (SUSE,Red Hat)
  • Alliance AES Encryption for UNIX (AIX, Solaris)
  • Alliance AES encryption for zSeries
  • Self-decrypting archives for Windows

Discovery & Assessment

  • User library discovery
  • User file discovery
  • Database analysis for sensitive data
  • Program analysis and cross-reference
  • User-defined search criteria
  • Assessment reports

Hardware Requirements

  • AS/400 (any RISC model)

Software Requirements

  • OS/400 V5R1 or later (includes i5/OS)

Documentation

Download the data sheet

Download the solution brief


More resources

Contact us for:

  • Full detailled PowerPoint presentation
  • Free trial

 

Alliance AES/400 is a Townsend Security product.