Partners | Contact Us | Where to Buy

Apriva Security

Boosting Government Security

The Apriva Sensa® secure mobile email offering is a complete, end-to-end secure, wireless messaging system. Sensa was designed from its initial conception to comply with NSA (V34) Non-Type 1 Wireless Protection Profiles, DoD Directives, and to provide a handheld vendor and wireless carrier-network-neutral implementation. The system was designed to support Secure Multipurpose Internet Mail Extensions (S/MIME) v3 email conventions for optimal legacy desktop interoperability as well as to adapt emerging conventions like S/MIME AES 256 (Advanced Encryption Standard) envelope encryption. The system was designed to be upgradeable to NSA Type 1 service with High Assurance Internet Protocol Encryptor communications and crypto extensions. The Apriva Sensa system was designed to fully integrate the Department of Defense Public Key Infrastructure (PKI) including hard token certificates, authentication for DoD Common Access Cards (CAC) or Personal Identity Verification (PIV) cards, as well as soft token digital certificates.

The four standard Sensa® system components are:

1. Sensa Handheld Client – provides the client mail application with supporting strong security, messaging, queuing, portable message stores and OS interface services. Additionally, handhelds are secured with seamless data-at-rest encryption (AES 256) and centrally managed time-to-live lock down. Secured files include all message stores and Microsoft PIM databases as well (Contacts, Tasks and Schedules).

2. Sensa Mail Server – provides the customer mail server (Microsoft Exchange 5.5/2000/2003) interface, DOD GDS/LDAP recipient look-ups and real-time full path signature validations. Network connections from the customer mail Enclaves to the Apriva® PMPG are outbound-only and use a single port to further strengthen security.

3. Sensa Management Server – provides administrative, configuration control and protected Audit Logs for all administrative changes as well as message traffic and security events for 1-32 Sensa Mail Servers. The management Server provides user activity reports and usage metrics.

4. Apriva PMPG – provides multi-carrier, multi-protocol gateways coupled with Sensa-specific routing to control traffic to the customer mail Enclaves. The PMPG blocks unauthorized handheld traffic to customer Enclaves and mitigates Denial Of Service (DoS) attacks (DoD 8100.2).

Additionally, the use of AprivaTalk infrastructure optimizes carrier bandwidth and message delivery speeds through wireless networks.

Additional Security components include:

CAC PKI Authentication
DoD Public Key Infrastructure (PKI) enablement requires the use of CACs and CAC Readers. Mobile CAC readers present many barriers to PKI enablement. The Apriva BT100-C supports CAC operations with a unique design.
Apriva designed the Universal Bluetooth CAC Reader to address a number of real-world, operational requirements:

1. Provide strong security to mitigate all Bluetooth security threat vectors, including enforced lockdown of all normal Bluetooth services in the Handheld.

2. Usable without complex configuration and setup procedures – plug and play

3. Include a FIPS 140-2 Level 3 crypto module to encrypt all wireless links

4. No requirement for a cable except for occasional tethered pairing operations and charging

5. Rechargeable battery life beyond one month

6. Stow able in a briefcase or purse and still operate at full speed

7. Have assured, zero RF emissions when the CAC is removed and trusted firmware loaded

8. Include a high quality soft landing CAC reading mechanism to limit CAC connection pad abrasions

9. Cases available to support wearable lanyard configuration

10. Be designed to also function as a USB Notebook CAC Reader when necessary to avoid bringing two CAC readers on trips in support of a notebook and a PDA

Wireless Transport Layer Security (WTLS)
WTLS is a security protocol based upon the industry-standard Transport Layer Security (TLS) protocol, formerly known as Secure Sockets Layer (SSL). WTLS is intended for use with the WAP transport protocols and has been optimized for use over narrow-band communication channels. WTLS provides the following features:

Data integrity – WTLS contains facilities to ensure that data sent between the terminal and an application server is unchanged and uncorrupted.

Privacy – WTLS contains facilities to ensure that data transmitted between the terminal and an application server is private and cannot be understood by any intermediate parties that may have intercepted the data stream.

Authentication – WTLS contains facilities to establish the authenticity of the terminal and application server.

Denial-of-service protection – WTLS contains facilities for detecting and rejecting data that is replayed or not successfully verified. WTLS makes many typical denial-of-service attacks harder to accomplish and protects the upper protocol layers.


WTLS may also be used for secure communication between terminals such as authentication of electronic business card exchange.
Applications are able to selectively enable or disable WTLS features depending on their security requirements and the characteristics of the underlying network.

Server Side Security
The Sensa Management Server is installed and managed exclusively by customer administrative personnel within the customer zone. A one-to-many relationship is supported between Sensa Mail Servers and customer provided mail servers such as Microsoft Exchange. A one-to-many relationship is supported between Sensa Management Servers and Sensa Mail Servers. The Sensa Management Server and Sensa Mail Server are typically installed in the same server hardware. There are no artificial product licenses or technical limits for the number of users supported. The user population size is gated solely by server and network capacities. The primary operation is specialized routing of the packet traffic to and from the wireless carriers and the devices.

Additionally, all routed packets have their own self-protection such as:

  • Type 1 Messages – HAIPE
  • Non Type 1 Messages – AES 256 + S/MIME encrypted-type 3-DES, session keys established via enclave server certificates, 3-5 packet key rotations and 24 hour sunset on master session key.
  • Connections to customer enclaves (COTS Sensa) are protected with PMPG valid enclave ID authorization tables and firewall IP openings.

Private Multi-Protocol Gateway (PMPG)
Apriva is the leader in providing 7/24 wireless carrier gateway and routing/transform services in the mobile Point of Sale (POS) marketplace. Apriva is dominant in this space and is the preferred vendor of American Express and First Data Corporation. Apriva’s Private Multi-Protocol Gateway (PMPG) is certified by VISA through its Cardholder Information Security Program (CISP). Apriva’s has partnerships with virtually all POS terminal vendors and its middleware (AprivaTalk) is ported to most operating system platforms used by these vendors. In the Government space, Apriva’s Sensa Secure Mobile Email system is DoD Joint Interoperability Test Command (JITC) validated and has passed all Army G6 Information Assurance (IA) vulnerability tests at Army ATID.

The PMPG is designed to operate in a black environment while supporting both NSA Type 1 and NSA Non Type 1 S/MIME message traffic. At no time do the PMPG components open any messages. This data center has multi-layer biometrics access, 3 way Internet pathing and proven 7/24 battery and diesel generation power backup.

Connections to wireless carriers will be private APNs using VPNs or Frame Relay connections. Any public Internet connections will be protected with the Cisco ASA server and a DMZ. The ASA provides firewall and denial of service protection as well as a VPN server for maintenance access.

Apriva’s unique Network design provides consistent network characteristics across both GSM/GPRS and CDMA and offers managed and unmanaged communication services for both classified and unclassified enclaves.

Unclassified (Non-Type 1) message traffic (Sensa AprivaTalk IP/UDP) is strongly encrypted with AES 256 using best practices key derivation, exchange and rotation.

Classified (Type 1) message traffic is very strongly encrypted with HAIPE, where key injection/control is not performed in the Apriva PMPG but rather in customer Enclaves and when the Portable Electronic Device (PED) is loaded in a trusted manner.

The Apriva PMPG design provides the following centralized services:
Redundant, private wireless carrier connections

  • Private connection from the PMPG to multiple and diverse wireless carrier networks
  • Single entry point for enclaves requiring multiple, diverse wireless network services
  • Managed end-to-end service with common reliability and security characteristics from the Portable Electronic Device (PED) all the way through to delivery to the enclave demarcation point
  • Simplified procurement with one centralized access point rather than multiple Centralized perimeter security via firewall and active intrusion protection
  • Multi Protocol Router (MPR) is the control and switching point all traffic to customer enclaves
  • Only the traffic from enclave administrator-authorized Portable Electronic Device units is routed to customer enclaves.

Multi Protocol Routing

  • The Apriva MPR is designed using existing AprivaTalk technology (Non Type 1) and extended to support High Assurance Internet Protocol Encryptor (Type 1)
  • Manages dynamic wireless carrier Portable Electronic Device IP changes to provide:
  • True “push” email delivery to the Portable Electronic Devices
  • Static IP address space as required for proper HAIPE connectivity, even when the underlying carrier networks cannot support static IP addresses.
  • Routes both Type 1 and non-Type 1 protocols
  • Provides an infrastructure and framework to add other services over time.

Administration Server

  • Portable Electronic Device provisioning/control by Enclave administrators via X.509 certificates and SSL.
  • Detailed audit logs (errors, provisioning/control changes, trace)
  • Traffic metrics
  • PMPG Component Status

Load Balancing

  • Balanced or weighted round robin
  • MPR keep-alive with failure notification

AprivaTalk
Apriva’s unique AprivaTalk infrastructure provides the network-neutral foundation for the Sensa system. AprivaTalk has been well tested in the wireless point of sale domain and has proven strengths in guaranteed delivery and bandwidth optimization with packet radio networks in marginal radio coverage areas. AprivaTalk optimizes message delivery performance over wireless networks.

The AprivaTalk Multi-Protocol Gateway (MPG) architecture provides a scaleable and extensible environment for application development for mobile communication devices. This is achieved through a layered design of the entire protocol stack. Each of the layers of the architecture is accessible by the layers above, as well as by other services and applications.


 

DoD-wide
Purchasing Contract:
DoD Wireless BPA#W91RUS-06-A-0010

Army TWED List

Sales Contact
Phone: 877-277-0756
sensasales@apriva.com

SCR Support
Phone: 866-277-9478
scrsupport@apriva.com

Sensa Support
Phone: 866-277-9482
sensasupport@apriva.com
SCR Sales Contact
Phone: 877-277-0756
scrsales@apriva.com