My INSURER PTE LTD - Insurtech Innovation Award 2024
Somerdata AROW Data Diode
1. AROW – High
Reliability Data
DiodeBy Simon Banks
Sales and Marketing Director
Somerdata Ltd.
Sep 14, 2012 1
2. AROW separates high security networks from lower security networks.
AROW provides one-way connection with high speed data.
AROW absolute security, no path to a lower level network.
AROW high reliability redundant paths with automatic failover.
AROW dedicated hardware –no pcs, NICs or operating systems to maintain or
protect.
Sep 14, 2012 2
3. • High security network protection
• Prevent data theft from phishing , trojans or man in the
middle infections.
• Discrete Network monitoring or intercept.
• High server availability requirements
• Process Control protection (cf Stuxnet)
Sep 14, 2012 3
4. AROW - Operation
Product Range Messages and protocol
Messages and protocol de-capsulation
encapsulation
AROW
Server on Server on “clean”
“dirty” network TCP/IP socket network
TCP/IP socket
Packetizing De-Packetizing
•Data are sent from the "dirty" network to the "clean" network.
•Server on the dirty network connects a TCP socket to AROW's low side data port.
• Messages sent over that socket arrive at the listening server on the clean network for processing
Sep 14, 2012 4
5. AROW Operation Software
Control & status Live high
Low
side server
side
server TCP
Live high side TCP
socket packet socket
server receiver server
Live Low side Control & status
packet driver
High
Bandwidth link
Dirty Clean
Backup Low side
packet driver Control & status
TCP
socket TCP
server Backup high socket
side packet server
receiver
Backup
high side
Control & status server
Redundant cross connected paths give failover safety
Automatic switchover between streams on failure.
Sep 14, 2012 5
6. AROW Operation
Low side
Network A High side Network 1
Control & status
Dirty TCP
Live high side TCP
socket packet socket
receiver server Clean
server
Live Low side Control & status
packet driver
Low side
Network B
Backup Low side
packet driver Control & status
Clean
TCP
socket TCP
Dirty server Backup high socket
side packet server
receiver
Control & status High side Network 2
2 Channel operation – provides 2 independent paths for two separated networks.
Sep 14, 2012 6
7. • Full Hardware implementation
• Data Interfaces Gigabit Ethernet/1000 Base-T, Optical or
Copper Options
• High-speed one-way internal optical connections
• 2 Gbit Deep packet buffer
• Independent Control Interfaces 10/100 Ethernet
• Redundant hot-swappable modules
• Redundant AC power module
• Remote Status monitoring
• 1U Rack mount , half-depth
Sep 14, 2012 7
8. AROW Process Protection
Custom Interface Converters
Corporate Corporate
Engineering MIS
Tech
Local Engineering Local MIS
Tech
Office Network
Manufacturing Management
Industrial Network
Process Control
Sep 14, 2012 8
9. AROW Process Protection
Corporate Corporate
Custom Interface Converters
Engineeri
ng Tech
MIS
Office Network : needs data for
administrative control, meetings,
discussions, billing, purchasing
Local Local MIS:
Engineering needs data for
Manufacturing Management: needs
Tech: needs performance
data for day-to day process
data for measurement,
monitoring, Quality Control, Change
Engineering statistical
monitoring
monitoring, analysis
new process
development
Industrial Network : 2-way data flow
for control of the process
Process Control
Network protected using AROW Data Diodes.
Sep 14, 2012 9
10. AROW Data Protection
Custom Interface Converters
Corporate
HQ/ MIS
Office Network : needs data for
administrative control, meetings,
discussions, billing, purchasing
Account Local MIS:
maintenance, needs data for
credit check, performance
fraud analysis measurement,
statistical
analysis
Branch network Online banking
Consumer and Retail
Sensitive Data protected using AROW Data Diodes.
Sep 14, 2012 10
11. AROW FAQ
Custom Interface Converters
What does AROW do that my Firewall
doesn’t?
AROW is not a substitute for a firewall – you still
need to take normal network security precautions,
including anti-virus, access control and application
maintenance.
With AROW you get the added protection that if any
of these precautions is defeated, your protected data
cannot be stolen.
Sep 14, 2012 11
12. AROW Data Diode
Custom Interface Converters
AROW allows more users to see data while
allowing fewer people to change it
AROW stops data theft
AROW simplifies maintenance and reduces
costs
AROW protects your customers
Sep 14, 2012 12