Raritan Introduces Digital KVM Switch with Encryption for Secure Data Center Access

FIPS 140-2 cryptographic module embedded in Dominion KX II switch

Note: ESJ’s editors carefully choose vendor-issued press releases about new or upgraded products and services. We have edited and/or condensed this release to highlight key features but make no claims as to the accuracy of the vendor's statements.

Raritan today announced the first digital KVM switch with an embedded Federal Information Processing Standards (FIPS) 140-2 certified encryption module, making it the most secure KVM-over-IP switch in the industry.

Designed to protect sensitive information in data centers, the FIPS 140-2 Cryptographic Module in the Dominion KX II Release 2.2 encrypts KVM session traffic consisting of video, keyboard, mouse, virtual media, and smart card data.

"The FIPS 140-2 Cryptographic Module used by the Dominion KX II meets the requirements for the U.S. and Canadian mandates for cryptographic-based security systems to protect sensitive information," said Richard Dominach, senior product manager at Raritan. "Raritan's solutions can help organizations in government, military, financial, healthcare, retail and other security-conscious segments secure their information. This new security feature is the latest in a long line of industry firsts delivered by the Dominion KX II."

The Cryptographic Module used by the Dominion KX II has been validated by the Cryptographic Module Validation Program (CMVP) for FIPS 140-2 Security Requirements for Cryptographic Modules, and other FIPS cryptography-based standards. The FIPS 140-2 Cryptographic Module is available on all Dominion KX II enterprise models with Release 2.2 firmware.

The FIPS mode status is displayed on the KX II User Interface. When in FIPS mode: KVM, virtual media and smart card encryption is enforced, FIPS-approved encryption algorithms are mandated, and passwords are stored via FIPS-approved hashes. Customers can also create FIPS-compliant SSL certificates with approved hashes.

Other Dominion KX II Security Features

Dominion KX II's advanced security features include:

  • 256-bit and 128-bit Advanced Encryption Standard (AES) of keyboard, video, mouse, and virtual media data; strong password support
  • Password aging
  • Per-port authorization
  • Built-in authentication capabilities

Dominion KX II integrates with industry-standard directory servers such as Microsoft Active Directory using either the LDAP or RADIUS protocols, enabling the use of pre-existing username/password databases for security.

For additional security measures, the optional Dominion KX II Smart Card Reader Solution provides Department of Defense (DoD) CAC (Common Access Card) and smart card-authentication. Whether working from a remote location or in the data center, authorized users are authenticated by inserting cards into the Smart Card/CAC Reader connected to their remote workstation or the Dominion KX II switch in the data center.

Designed for customers requiring secure server access from anywhere, the Dominion KX II switches enable multiple IT administrators -- remote and local users -- to access multiple servers. The KX II provides BIOS-level access so all servers are always accessible -- even if a server's operating system is not working. The KX II also enables remote installation of software, file transfers, data backup and diagnostics with its Universal Virtual Media feature, and can control power to servers with optional remote power strips. The self-contained Dominion KX II comes with all key features, including authentication and Web-access, built into the appliance.

The Dominion KX II's advanced productivity features include Absolute Mouse Synchronization that eliminates time-consuming extra steps to adjust mouse settings for each target server. For high availability, all models come with dual power supplies with automatic failover. The KX II also highest remote video resolution up to 1600 x 1200 pixels, as well as support for popular widescreen video formats.

Raritan's extensive Dominion KX II portfolio helps IT teams manage more -- servers, locations, technology platforms, applications -- with fewer resources. The KVM-over-IP switch's browser-based interface provides a consistent user experience for both remote and at-the-rack server management.

All KX II models are CommandCenter Secure Gateway certified so multiple Dominion switches and connected servers can be managed from one IP address.

More information is available at www.raritan.com.

Must Read Articles