SlideShare a Scribd company logo
1 of 13
AROW – High
               Reliability Data
                    DiodeBy Simon Banks
                   Sales and Marketing Director
                           Somerdata Ltd.




Sep 14, 2012                                      1
AROW separates high security networks from lower security networks.
AROW provides one-way connection with high speed data.
AROW absolute security, no path to a lower level network.
AROW high reliability redundant paths with automatic failover.
AROW dedicated hardware –no pcs, NICs or operating systems to maintain or
                protect.



Sep 14, 2012                                                            2
• High security network protection
• Prevent data theft from phishing , trojans or man in the
middle infections.
• Discrete Network monitoring or intercept.

• High server availability requirements


• Process Control protection (cf Stuxnet)



Sep 14, 2012                                                 3
AROW - Operation
Product Range  Messages and protocol
                                                                      Messages and protocol de-capsulation

               encapsulation




                                                     AROW




      Server on                                                                                              Server on “clean”
 “dirty” network   TCP/IP socket                                                                                      network
                                                                                         TCP/IP socket


                                       Packetizing                      De-Packetizing




•Data are sent from the "dirty" network to the "clean" network.
•Server on the dirty network connects a TCP socket to AROW's low side data port.
• Messages sent over that socket arrive at the listening server on the clean network for processing


Sep 14, 2012                                                                                                                     4
AROW Operation Software
                       Control & status                                                     Live high
  Low
                                                                                            side server
  side
  server               TCP
                                                      Live high side   TCP
                       socket                         packet           socket
                       server                         receiver         server



                                      Live Low side              Control & status
                                      packet driver



                                 High
                                 Bandwidth link
           Dirty                                                                    Clean



                                    Backup Low side
                                    packet driver                Control & status

                       TCP
                       socket                                          TCP
                       server                         Backup high      socket
                                                      side packet      server
                                                      receiver
                                                                                             Backup
                                                                                             high side
                       Control & status                                                      server




           Redundant cross connected paths give failover safety
           Automatic switchover between streams on failure.

Sep 14, 2012                                                                                              5
AROW Operation
Low side
Network A                                                                                     High side Network 1
                        Control & status



       Dirty            TCP
                                                       Live high side   TCP
                        socket                         packet           socket
                                                       receiver         server       Clean
                        server


                                       Live Low side              Control & status
                                       packet driver


 Low side
 Network B
                                     Backup Low side
                                     packet driver                Control & status
                                                                                      Clean
                        TCP
                        socket                                          TCP
        Dirty           server                         Backup high      socket
                                                       side packet      server
                                                       receiver


                        Control & status                                                      High side Network 2




                2 Channel operation – provides 2 independent paths for two separated networks.




    Sep 14, 2012                                                                                                    6
• Full Hardware implementation
         • Data Interfaces Gigabit Ethernet/1000 Base-T, Optical or
           Copper Options
         • High-speed one-way internal optical connections
         • 2 Gbit Deep packet buffer
         • Independent Control Interfaces 10/100 Ethernet
         • Redundant hot-swappable modules
         • Redundant AC power module
         • Remote Status monitoring
         • 1U Rack mount , half-depth




Sep 14, 2012                                                          7
AROW Process Protection
Custom Interface Converters

                Corporate                                                 Corporate
                Engineering                                               MIS
                Tech
                     Local Engineering                              Local MIS
                     Tech
                                             Office Network

                                         Manufacturing Management

                                           Industrial Network


                                              Process Control




 Sep 14, 2012                                                                         8
AROW Process Protection
               Corporate                                                    Corporate
    Custom Interface Converters
               Engineeri
               ng Tech
                                                                            MIS



                                      Office Network : needs data for
                                     administrative control, meetings,
                                      discussions, billing, purchasing

               Local                                                       Local MIS:
               Engineering                                                 needs data for
                                     Manufacturing Management: needs
               Tech: needs                                                 performance
                                        data for day-to day process
               data for                                                    measurement,
                                     monitoring, Quality Control, Change
               Engineering                                                 statistical
                                                 monitoring
               monitoring,                                                 analysis
               new process
               development

                                    Industrial Network : 2-way data flow
                                         for control of the process

                                              Process Control




                           Network protected using AROW Data Diodes.
Sep 14, 2012                                                                                9
AROW Data Protection
    Custom Interface Converters
                          Corporate
                          HQ/ MIS




                                      Office Network : needs data for
                                     administrative control, meetings,
                                      discussions, billing, purchasing

               Account                                                        Local MIS:
               maintenance,                                                   needs data for
               credit check,                                                  performance
               fraud analysis                                                 measurement,
                                                                              statistical
                                                                              analysis




                                              Branch network                                   Online banking


                                            Consumer and Retail




                           Sensitive Data protected using AROW Data Diodes.
Sep 14, 2012                                                                                                    10
AROW FAQ
    Custom Interface Converters

      What does AROW do that my Firewall
      doesn’t?


      AROW is not a substitute for a firewall – you still
      need to take normal network security precautions,
      including anti-virus, access control and application
      maintenance.
      With AROW you get the added protection that if any
      of these precautions is defeated, your protected data
      cannot be stolen.



Sep 14, 2012                                                  11
AROW Data Diode
    Custom Interface Converters

      AROW allows more users to see data while
      allowing fewer people to change it
       AROW stops data theft
       AROW simplifies maintenance and reduces
       costs
       AROW protects your customers




Sep 14, 2012                                     12
www.somerdata.com

More Related Content

What's hot

Scaling Diameter for LTE
Scaling Diameter for LTEScaling Diameter for LTE
Scaling Diameter for LTEAcmePacket
 
Chap 4. call processing and handover.eng
Chap 4. call processing and handover.engChap 4. call processing and handover.eng
Chap 4. call processing and handover.engsivakumar D
 
Weightless - a new standard, a new technology
Weightless - a new standard, a new technologyWeightless - a new standard, a new technology
Weightless - a new standard, a new technologyDhruvit Rajpura
 
WCDMA Tems Parameters Investigation and Drive Testing
WCDMA Tems Parameters Investigation and Drive TestingWCDMA Tems Parameters Investigation and Drive Testing
WCDMA Tems Parameters Investigation and Drive TestingS Mohib Naqvi
 
Introduction to DIAMETER
Introduction to DIAMETERIntroduction to DIAMETER
Introduction to DIAMETERHossein Yavari
 
New 3G Industrial Cellular Router from R&S Topex
New 3G Industrial Cellular Router from R&S TopexNew 3G Industrial Cellular Router from R&S Topex
New 3G Industrial Cellular Router from R&S TopexBogdan Calin, PMP
 
Owa330011 bssap protocol analysis issue 1.0
Owa330011 bssap protocol analysis issue 1.0Owa330011 bssap protocol analysis issue 1.0
Owa330011 bssap protocol analysis issue 1.0Nguon Dung Le
 
Ready for the Evolution: LTE Session delivery requirements
Ready for the Evolution: LTE Session delivery requirementsReady for the Evolution: LTE Session delivery requirements
Ready for the Evolution: LTE Session delivery requirementsAcmePacket
 
SIP Overload Control Problem Statement
SIP Overload Control Problem StatementSIP Overload Control Problem Statement
SIP Overload Control Problem StatementVictor Pascual Ávila
 
Ericsson interview
Ericsson interviewEricsson interview
Ericsson interviewSatish Jadav
 
19080432 rrc-procedures-in-lte-comments-v1
19080432 rrc-procedures-in-lte-comments-v119080432 rrc-procedures-in-lte-comments-v1
19080432 rrc-procedures-in-lte-comments-v1vedaarunachalam
 
(4,5) enlaces wan traduccion
(4,5) enlaces wan traduccion(4,5) enlaces wan traduccion
(4,5) enlaces wan traduccioniaraujo100301
 
FlowER Erlang Openflow Controller
FlowER Erlang Openflow ControllerFlowER Erlang Openflow Controller
FlowER Erlang Openflow ControllerHolger Winkelmann
 

What's hot (19)

Scaling Diameter for LTE
Scaling Diameter for LTEScaling Diameter for LTE
Scaling Diameter for LTE
 
Chap 4. call processing and handover.eng
Chap 4. call processing and handover.engChap 4. call processing and handover.eng
Chap 4. call processing and handover.eng
 
3 g scft
3 g scft3 g scft
3 g scft
 
Weightless - a new standard, a new technology
Weightless - a new standard, a new technologyWeightless - a new standard, a new technology
Weightless - a new standard, a new technology
 
Lte epc kp is and signalling (sf)
Lte epc kp is and signalling (sf)Lte epc kp is and signalling (sf)
Lte epc kp is and signalling (sf)
 
Albedo.Net.Audit.Ps
Albedo.Net.Audit.PsAlbedo.Net.Audit.Ps
Albedo.Net.Audit.Ps
 
WCDMA Tems Parameters Investigation and Drive Testing
WCDMA Tems Parameters Investigation and Drive TestingWCDMA Tems Parameters Investigation and Drive Testing
WCDMA Tems Parameters Investigation and Drive Testing
 
San 2
San 2San 2
San 2
 
Introduction to DIAMETER
Introduction to DIAMETERIntroduction to DIAMETER
Introduction to DIAMETER
 
New 3G Industrial Cellular Router from R&S Topex
New 3G Industrial Cellular Router from R&S TopexNew 3G Industrial Cellular Router from R&S Topex
New 3G Industrial Cellular Router from R&S Topex
 
Anga 2013 v2
Anga 2013 v2Anga 2013 v2
Anga 2013 v2
 
Owa330011 bssap protocol analysis issue 1.0
Owa330011 bssap protocol analysis issue 1.0Owa330011 bssap protocol analysis issue 1.0
Owa330011 bssap protocol analysis issue 1.0
 
Ready for the Evolution: LTE Session delivery requirements
Ready for the Evolution: LTE Session delivery requirementsReady for the Evolution: LTE Session delivery requirements
Ready for the Evolution: LTE Session delivery requirements
 
SIP Overload Control Problem Statement
SIP Overload Control Problem StatementSIP Overload Control Problem Statement
SIP Overload Control Problem Statement
 
Ericsson interview
Ericsson interviewEricsson interview
Ericsson interview
 
Sit training cr
Sit training crSit training cr
Sit training cr
 
19080432 rrc-procedures-in-lte-comments-v1
19080432 rrc-procedures-in-lte-comments-v119080432 rrc-procedures-in-lte-comments-v1
19080432 rrc-procedures-in-lte-comments-v1
 
(4,5) enlaces wan traduccion
(4,5) enlaces wan traduccion(4,5) enlaces wan traduccion
(4,5) enlaces wan traduccion
 
FlowER Erlang Openflow Controller
FlowER Erlang Openflow ControllerFlowER Erlang Openflow Controller
FlowER Erlang Openflow Controller
 

Viewers also liked

Immutable Infrastructure Security
Immutable Infrastructure SecurityImmutable Infrastructure Security
Immutable Infrastructure SecurityRicky Sanders
 
NIST Cybersecurity Framework Background and Review | Jack Whitsitt
NIST Cybersecurity Framework Background and Review | Jack WhitsittNIST Cybersecurity Framework Background and Review | Jack Whitsitt
NIST Cybersecurity Framework Background and Review | Jack WhitsittJack Whitsitt
 
Safend- DL
Safend- DLSafend- DL
Safend- DLdanilopv
 
Guide to Investment: Republic of Tatarstan
Guide to Investment: Republic of TatarstanGuide to Investment: Republic of Tatarstan
Guide to Investment: Republic of TatarstanInvestTatarstan
 
Bloombase 为 KVM 企业级虚拟数据中心提供全方位信息安全保护及运算
Bloombase 为 KVM 企业级虚拟数据中心提供全方位信息安全保护及运算Bloombase 为 KVM 企业级虚拟数据中心提供全方位信息安全保护及运算
Bloombase 为 KVM 企业级虚拟数据中心提供全方位信息安全保护及运算Bloombase
 
New concepts in human
New concepts in humanNew concepts in human
New concepts in humanbechikmn
 
Optimizing the Virtual Environment
Optimizing the Virtual EnvironmentOptimizing the Virtual Environment
Optimizing the Virtual Environmentuptime software
 
OutSys Company Presentation
OutSys Company PresentationOutSys Company Presentation
OutSys Company PresentationOutSys
 
Tieto Enator
Tieto EnatorTieto Enator
Tieto Enatorsvatle
 
Dematic Logistics Review #4
Dematic Logistics Review #4Dematic Logistics Review #4
Dematic Logistics Review #4hagenbucksw
 
E-group's pitch
E-group's pitchE-group's pitch
E-group's pitchi7
 
Estrategias y recursos i
Estrategias y recursos iEstrategias y recursos i
Estrategias y recursos ijkrls
 
History of the llano estacado
History of the llano estacadoHistory of the llano estacado
History of the llano estacadoMark McGinley
 
Aspirin as a Service: Using the Cloud to Cure Security Headaches
Aspirin as a Service: Using the Cloud to Cure Security HeadachesAspirin as a Service: Using the Cloud to Cure Security Headaches
Aspirin as a Service: Using the Cloud to Cure Security HeadachesPriyanka Aash
 
Desafios jurídicos de Internet
Desafios jurídicos de InternetDesafios jurídicos de Internet
Desafios jurídicos de InternetLoreto Corredoira
 

Viewers also liked (20)

Immutable Infrastructure Security
Immutable Infrastructure SecurityImmutable Infrastructure Security
Immutable Infrastructure Security
 
NIST Cybersecurity Framework Background and Review | Jack Whitsitt
NIST Cybersecurity Framework Background and Review | Jack WhitsittNIST Cybersecurity Framework Background and Review | Jack Whitsitt
NIST Cybersecurity Framework Background and Review | Jack Whitsitt
 
Safend- DL
Safend- DLSafend- DL
Safend- DL
 
Guide to Investment: Republic of Tatarstan
Guide to Investment: Republic of TatarstanGuide to Investment: Republic of Tatarstan
Guide to Investment: Republic of Tatarstan
 
Bloombase 为 KVM 企业级虚拟数据中心提供全方位信息安全保护及运算
Bloombase 为 KVM 企业级虚拟数据中心提供全方位信息安全保护及运算Bloombase 为 KVM 企业级虚拟数据中心提供全方位信息安全保护及运算
Bloombase 为 KVM 企业级虚拟数据中心提供全方位信息安全保护及运算
 
Tranzeo
TranzeoTranzeo
Tranzeo
 
30 Band Marks
30 Band Marks30 Band Marks
30 Band Marks
 
New concepts in human
New concepts in humanNew concepts in human
New concepts in human
 
Optimizing the Virtual Environment
Optimizing the Virtual EnvironmentOptimizing the Virtual Environment
Optimizing the Virtual Environment
 
OutSys Company Presentation
OutSys Company PresentationOutSys Company Presentation
OutSys Company Presentation
 
DABiS800
DABiS800DABiS800
DABiS800
 
Tieto Enator
Tieto EnatorTieto Enator
Tieto Enator
 
Dematic Logistics Review #4
Dematic Logistics Review #4Dematic Logistics Review #4
Dematic Logistics Review #4
 
Mapa Mental
Mapa MentalMapa Mental
Mapa Mental
 
E-group's pitch
E-group's pitchE-group's pitch
E-group's pitch
 
Estrategias y recursos i
Estrategias y recursos iEstrategias y recursos i
Estrategias y recursos i
 
History of the llano estacado
History of the llano estacadoHistory of the llano estacado
History of the llano estacado
 
Catalog Sew-Eurodrive
Catalog Sew-EurodriveCatalog Sew-Eurodrive
Catalog Sew-Eurodrive
 
Aspirin as a Service: Using the Cloud to Cure Security Headaches
Aspirin as a Service: Using the Cloud to Cure Security HeadachesAspirin as a Service: Using the Cloud to Cure Security Headaches
Aspirin as a Service: Using the Cloud to Cure Security Headaches
 
Desafios jurídicos de Internet
Desafios jurídicos de InternetDesafios jurídicos de Internet
Desafios jurídicos de Internet
 

Similar to Somerdata AROW Data Diode

Toward an Understanding of the Processing Delay of Peer-to-Peer Relay Nodes
Toward an Understanding of the Processing Delay of Peer-to-Peer Relay NodesToward an Understanding of the Processing Delay of Peer-to-Peer Relay Nodes
Toward an Understanding of the Processing Delay of Peer-to-Peer Relay NodesAcademia Sinica
 
HIPERLINK 05G backhaul - IRTX
HIPERLINK 05G backhaul - IRTXHIPERLINK 05G backhaul - IRTX
HIPERLINK 05G backhaul - IRTXRes-Ingenium
 
[SOS 2009] D-Link: Red Segura L2 L3
[SOS 2009] D-Link: Red Segura L2 L3[SOS 2009] D-Link: Red Segura L2 L3
[SOS 2009] D-Link: Red Segura L2 L3Chema Alonso
 
Carrier ethernet-for-power-utilities-presentation
Carrier ethernet-for-power-utilities-presentationCarrier ethernet-for-power-utilities-presentation
Carrier ethernet-for-power-utilities-presentationNir Cohen
 
Hiperlink optical 05 Ghz-lanrtx
Hiperlink optical 05 Ghz-lanrtxHiperlink optical 05 Ghz-lanrtx
Hiperlink optical 05 Ghz-lanrtxRes-Ingenium
 
Acme Packet Presentation Materials for VUC June 18th 2010
Acme Packet Presentation Materials for VUC June 18th 2010Acme Packet Presentation Materials for VUC June 18th 2010
Acme Packet Presentation Materials for VUC June 18th 2010Michael Graves
 
Cvc2009 Moscow Repeater+Ica Fabian Kienle Final
Cvc2009 Moscow Repeater+Ica  Fabian Kienle FinalCvc2009 Moscow Repeater+Ica  Fabian Kienle Final
Cvc2009 Moscow Repeater+Ica Fabian Kienle FinalLiudmila Li
 
Enhancing Network Visibility Based On Open Converged Network Appliance
Enhancing Network Visibility Based On Open Converged Network ApplianceEnhancing Network Visibility Based On Open Converged Network Appliance
Enhancing Network Visibility Based On Open Converged Network ApplianceOpen Networking Summit
 
Vista-1600C GEPON OLT
Vista-1600C GEPON OLTVista-1600C GEPON OLT
Vista-1600C GEPON OLTShanxi Cai
 
A zigbee wireless sensor network and multiple way bus communication meduim ca...
A zigbee wireless sensor network and multiple way bus communication meduim ca...A zigbee wireless sensor network and multiple way bus communication meduim ca...
A zigbee wireless sensor network and multiple way bus communication meduim ca...ranjitha mudhiraj
 
Hungary Usergroup - Midonet overlay programming
Hungary Usergroup - Midonet overlay programmingHungary Usergroup - Midonet overlay programming
Hungary Usergroup - Midonet overlay programmingMarton Kiss
 
Network and TCP performance relationship workshop
Network and TCP performance relationship workshopNetwork and TCP performance relationship workshop
Network and TCP performance relationship workshopKae Hsu
 
sub.net substation monitor
sub.net substation monitorsub.net substation monitor
sub.net substation monitorrk_at_emsni
 
Gaweł mikołajczyk. holistic identity based networking approach – an irreducib...
Gaweł mikołajczyk. holistic identity based networking approach – an irreducib...Gaweł mikołajczyk. holistic identity based networking approach – an irreducib...
Gaweł mikołajczyk. holistic identity based networking approach – an irreducib...Yury Chemerkin
 
Providing Controlled Quality Assurance in Video Streaming ...
Providing Controlled Quality Assurance in Video Streaming ...Providing Controlled Quality Assurance in Video Streaming ...
Providing Controlled Quality Assurance in Video Streaming ...Videoguy
 
Honeypot Farms using Ethernet Bridging over a TCP Connection
Honeypot Farms using Ethernet Bridging over a TCP Connection Honeypot Farms using Ethernet Bridging over a TCP Connection
Honeypot Farms using Ethernet Bridging over a TCP Connection morisson
 
White Paper: IP VPN and Ethernet WAN Services
White Paper: IP VPN and Ethernet WAN ServicesWhite Paper: IP VPN and Ethernet WAN Services
White Paper: IP VPN and Ethernet WAN ServicesMetrodata Limited
 

Similar to Somerdata AROW Data Diode (20)

Toward an Understanding of the Processing Delay of Peer-to-Peer Relay Nodes
Toward an Understanding of the Processing Delay of Peer-to-Peer Relay NodesToward an Understanding of the Processing Delay of Peer-to-Peer Relay Nodes
Toward an Understanding of the Processing Delay of Peer-to-Peer Relay Nodes
 
HIPERLINK 05G backhaul - IRTX
HIPERLINK 05G backhaul - IRTXHIPERLINK 05G backhaul - IRTX
HIPERLINK 05G backhaul - IRTX
 
[SOS 2009] D-Link: Red Segura L2 L3
[SOS 2009] D-Link: Red Segura L2 L3[SOS 2009] D-Link: Red Segura L2 L3
[SOS 2009] D-Link: Red Segura L2 L3
 
Carrier ethernet-for-power-utilities-presentation
Carrier ethernet-for-power-utilities-presentationCarrier ethernet-for-power-utilities-presentation
Carrier ethernet-for-power-utilities-presentation
 
Hiperlink optical 05 Ghz-lanrtx
Hiperlink optical 05 Ghz-lanrtxHiperlink optical 05 Ghz-lanrtx
Hiperlink optical 05 Ghz-lanrtx
 
Acme Packet Presentation Materials for VUC June 18th 2010
Acme Packet Presentation Materials for VUC June 18th 2010Acme Packet Presentation Materials for VUC June 18th 2010
Acme Packet Presentation Materials for VUC June 18th 2010
 
T3 datasheet
T3 datasheetT3 datasheet
T3 datasheet
 
Cvc2009 Moscow Repeater+Ica Fabian Kienle Final
Cvc2009 Moscow Repeater+Ica  Fabian Kienle FinalCvc2009 Moscow Repeater+Ica  Fabian Kienle Final
Cvc2009 Moscow Repeater+Ica Fabian Kienle Final
 
Enhancing Network Visibility Based On Open Converged Network Appliance
Enhancing Network Visibility Based On Open Converged Network ApplianceEnhancing Network Visibility Based On Open Converged Network Appliance
Enhancing Network Visibility Based On Open Converged Network Appliance
 
Vista-1600C GEPON OLT
Vista-1600C GEPON OLTVista-1600C GEPON OLT
Vista-1600C GEPON OLT
 
A zigbee wireless sensor network and multiple way bus communication meduim ca...
A zigbee wireless sensor network and multiple way bus communication meduim ca...A zigbee wireless sensor network and multiple way bus communication meduim ca...
A zigbee wireless sensor network and multiple way bus communication meduim ca...
 
Hungary Usergroup - Midonet overlay programming
Hungary Usergroup - Midonet overlay programmingHungary Usergroup - Midonet overlay programming
Hungary Usergroup - Midonet overlay programming
 
Network and TCP performance relationship workshop
Network and TCP performance relationship workshopNetwork and TCP performance relationship workshop
Network and TCP performance relationship workshop
 
sub.net substation monitor
sub.net substation monitorsub.net substation monitor
sub.net substation monitor
 
PLC
PLCPLC
PLC
 
Gaweł mikołajczyk. holistic identity based networking approach – an irreducib...
Gaweł mikołajczyk. holistic identity based networking approach – an irreducib...Gaweł mikołajczyk. holistic identity based networking approach – an irreducib...
Gaweł mikołajczyk. holistic identity based networking approach – an irreducib...
 
Providing Controlled Quality Assurance in Video Streaming ...
Providing Controlled Quality Assurance in Video Streaming ...Providing Controlled Quality Assurance in Video Streaming ...
Providing Controlled Quality Assurance in Video Streaming ...
 
Honeypot Farms using Ethernet Bridging over a TCP Connection
Honeypot Farms using Ethernet Bridging over a TCP Connection Honeypot Farms using Ethernet Bridging over a TCP Connection
Honeypot Farms using Ethernet Bridging over a TCP Connection
 
Lecture04 H
Lecture04 HLecture04 H
Lecture04 H
 
White Paper: IP VPN and Ethernet WAN Services
White Paper: IP VPN and Ethernet WAN ServicesWhite Paper: IP VPN and Ethernet WAN Services
White Paper: IP VPN and Ethernet WAN Services
 

Recently uploaded

"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii Soldatenko"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii SoldatenkoFwdays
 
Install Stable Diffusion in windows machine
Install Stable Diffusion in windows machineInstall Stable Diffusion in windows machine
Install Stable Diffusion in windows machinePadma Pradeep
 
SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024Lorenzo Miniero
 
SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024Scott Keck-Warren
 
Vertex AI Gemini Prompt Engineering Tips
Vertex AI Gemini Prompt Engineering TipsVertex AI Gemini Prompt Engineering Tips
Vertex AI Gemini Prompt Engineering TipsMiki Katsuragi
 
Understanding the Laravel MVC Architecture
Understanding the Laravel MVC ArchitectureUnderstanding the Laravel MVC Architecture
Understanding the Laravel MVC ArchitecturePixlogix Infotech
 
Pigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food ManufacturingPigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food ManufacturingPigging Solutions
 
SAP Build Work Zone - Overview L2-L3.pptx
SAP Build Work Zone - Overview L2-L3.pptxSAP Build Work Zone - Overview L2-L3.pptx
SAP Build Work Zone - Overview L2-L3.pptxNavinnSomaal
 
My Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 PresentationMy Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 PresentationRidwan Fadjar
 
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 3652toLead Limited
 
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek SchlawackFwdays
 
Scanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL CertsScanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL CertsRizwan Syed
 
Story boards and shot lists for my a level piece
Story boards and shot lists for my a level pieceStory boards and shot lists for my a level piece
Story boards and shot lists for my a level piececharlottematthew16
 
Streamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project SetupStreamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project SetupFlorian Wilhelm
 
Beyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry InnovationBeyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry InnovationSafe Software
 
Unleash Your Potential - Namagunga Girls Coding Club
Unleash Your Potential - Namagunga Girls Coding ClubUnleash Your Potential - Namagunga Girls Coding Club
Unleash Your Potential - Namagunga Girls Coding ClubKalema Edgar
 
Dev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebDev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebUiPathCommunity
 
Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Scott Keck-Warren
 
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks..."LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...Fwdays
 
My INSURER PTE LTD - Insurtech Innovation Award 2024
My INSURER PTE LTD - Insurtech Innovation Award 2024My INSURER PTE LTD - Insurtech Innovation Award 2024
My INSURER PTE LTD - Insurtech Innovation Award 2024The Digital Insurer
 

Recently uploaded (20)

"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii Soldatenko"Debugging python applications inside k8s environment", Andrii Soldatenko
"Debugging python applications inside k8s environment", Andrii Soldatenko
 
Install Stable Diffusion in windows machine
Install Stable Diffusion in windows machineInstall Stable Diffusion in windows machine
Install Stable Diffusion in windows machine
 
SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024SIP trunking in Janus @ Kamailio World 2024
SIP trunking in Janus @ Kamailio World 2024
 
SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024
 
Vertex AI Gemini Prompt Engineering Tips
Vertex AI Gemini Prompt Engineering TipsVertex AI Gemini Prompt Engineering Tips
Vertex AI Gemini Prompt Engineering Tips
 
Understanding the Laravel MVC Architecture
Understanding the Laravel MVC ArchitectureUnderstanding the Laravel MVC Architecture
Understanding the Laravel MVC Architecture
 
Pigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food ManufacturingPigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food Manufacturing
 
SAP Build Work Zone - Overview L2-L3.pptx
SAP Build Work Zone - Overview L2-L3.pptxSAP Build Work Zone - Overview L2-L3.pptx
SAP Build Work Zone - Overview L2-L3.pptx
 
My Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 PresentationMy Hashitalk Indonesia April 2024 Presentation
My Hashitalk Indonesia April 2024 Presentation
 
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
 
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
 
Scanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL CertsScanning the Internet for External Cloud Exposures via SSL Certs
Scanning the Internet for External Cloud Exposures via SSL Certs
 
Story boards and shot lists for my a level piece
Story boards and shot lists for my a level pieceStory boards and shot lists for my a level piece
Story boards and shot lists for my a level piece
 
Streamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project SetupStreamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project Setup
 
Beyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry InnovationBeyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
 
Unleash Your Potential - Namagunga Girls Coding Club
Unleash Your Potential - Namagunga Girls Coding ClubUnleash Your Potential - Namagunga Girls Coding Club
Unleash Your Potential - Namagunga Girls Coding Club
 
Dev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebDev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio Web
 
Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024
 
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks..."LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...
"LLMs for Python Engineers: Advanced Data Analysis and Semantic Kernel",Oleks...
 
My INSURER PTE LTD - Insurtech Innovation Award 2024
My INSURER PTE LTD - Insurtech Innovation Award 2024My INSURER PTE LTD - Insurtech Innovation Award 2024
My INSURER PTE LTD - Insurtech Innovation Award 2024
 

Somerdata AROW Data Diode

  • 1. AROW – High Reliability Data DiodeBy Simon Banks Sales and Marketing Director Somerdata Ltd. Sep 14, 2012 1
  • 2. AROW separates high security networks from lower security networks. AROW provides one-way connection with high speed data. AROW absolute security, no path to a lower level network. AROW high reliability redundant paths with automatic failover. AROW dedicated hardware –no pcs, NICs or operating systems to maintain or protect. Sep 14, 2012 2
  • 3. • High security network protection • Prevent data theft from phishing , trojans or man in the middle infections. • Discrete Network monitoring or intercept. • High server availability requirements • Process Control protection (cf Stuxnet) Sep 14, 2012 3
  • 4. AROW - Operation Product Range Messages and protocol Messages and protocol de-capsulation encapsulation AROW Server on Server on “clean” “dirty” network TCP/IP socket network TCP/IP socket Packetizing De-Packetizing •Data are sent from the "dirty" network to the "clean" network. •Server on the dirty network connects a TCP socket to AROW's low side data port. • Messages sent over that socket arrive at the listening server on the clean network for processing Sep 14, 2012 4
  • 5. AROW Operation Software Control & status Live high Low side server side server TCP Live high side TCP socket packet socket server receiver server Live Low side Control & status packet driver High Bandwidth link Dirty Clean Backup Low side packet driver Control & status TCP socket TCP server Backup high socket side packet server receiver Backup high side Control & status server Redundant cross connected paths give failover safety Automatic switchover between streams on failure. Sep 14, 2012 5
  • 6. AROW Operation Low side Network A High side Network 1 Control & status Dirty TCP Live high side TCP socket packet socket receiver server Clean server Live Low side Control & status packet driver Low side Network B Backup Low side packet driver Control & status Clean TCP socket TCP Dirty server Backup high socket side packet server receiver Control & status High side Network 2 2 Channel operation – provides 2 independent paths for two separated networks. Sep 14, 2012 6
  • 7. • Full Hardware implementation • Data Interfaces Gigabit Ethernet/1000 Base-T, Optical or Copper Options • High-speed one-way internal optical connections • 2 Gbit Deep packet buffer • Independent Control Interfaces 10/100 Ethernet • Redundant hot-swappable modules • Redundant AC power module • Remote Status monitoring • 1U Rack mount , half-depth Sep 14, 2012 7
  • 8. AROW Process Protection Custom Interface Converters Corporate Corporate Engineering MIS Tech Local Engineering Local MIS Tech Office Network Manufacturing Management Industrial Network Process Control Sep 14, 2012 8
  • 9. AROW Process Protection Corporate Corporate Custom Interface Converters Engineeri ng Tech MIS Office Network : needs data for administrative control, meetings, discussions, billing, purchasing Local Local MIS: Engineering needs data for Manufacturing Management: needs Tech: needs performance data for day-to day process data for measurement, monitoring, Quality Control, Change Engineering statistical monitoring monitoring, analysis new process development Industrial Network : 2-way data flow for control of the process Process Control Network protected using AROW Data Diodes. Sep 14, 2012 9
  • 10. AROW Data Protection Custom Interface Converters Corporate HQ/ MIS Office Network : needs data for administrative control, meetings, discussions, billing, purchasing Account Local MIS: maintenance, needs data for credit check, performance fraud analysis measurement, statistical analysis Branch network Online banking Consumer and Retail Sensitive Data protected using AROW Data Diodes. Sep 14, 2012 10
  • 11. AROW FAQ Custom Interface Converters What does AROW do that my Firewall doesn’t? AROW is not a substitute for a firewall – you still need to take normal network security precautions, including anti-virus, access control and application maintenance. With AROW you get the added protection that if any of these precautions is defeated, your protected data cannot be stolen. Sep 14, 2012 11
  • 12. AROW Data Diode Custom Interface Converters AROW allows more users to see data while allowing fewer people to change it AROW stops data theft AROW simplifies maintenance and reduces costs AROW protects your customers Sep 14, 2012 12