Security for your Desktop
Simple to set up, software-free and on-the-fly AES Hardware Encryption, the Aegis Padlock DT FIPS takes the perfect desktop companion to the highest level of security. The Aegis Padlock DT FIPS, designed specifically for desktop systems, this high-capacity desktop external drive has everything you need to keep your most sensitive data secure.
FIPS 140-2 Level 2 Validated
Tested and validated by the National Institute of Standards and Technology (NIST) for use by the Federal governments of the USA, Canada and others, the Aegis Padlock DT FIPS Drive is based on Apricorn’s FIPS 140-2 Level 2 validated encryption module as indicated by certificate #2835 http://csrc.nist.gov/groups/STM/cmvp/documents/140-1/1401val2017.htm
. The Padlock DT’s security policy is located on the NIST site at the following link http://csrc.nist.gov/groups/STM/cmvp/documents/140-1/140sp/140sp2835.pdf
. The epoxy coated boundary includes all encryption functions and all Critical Security Parameters (CSPs) such as PIN storage, encryption key generation and storage, random number and seed generators, and all firmware storage. The FIPS module is a complete encryption system, and all CSPs never leave the boundary and are never shared with a host system. By design, the HDD/SSD that stores the encrypted data is excluded from this boundary to both maximize affordability and product line flexibility in capacity and form factor offerings.
Additionally, governments and public companies worldwide in the education, healthcare, and financial services industries have adopted using FIPS 140-2 validated drives as the regulations requiring their use is continuously expanding. Enterprises that wish to use the strongest encryption available have also adopted using FIPS 140-2 drives as it’s widely known how stringent the testing is to receive this level of certification.
Independent Admin and User PINs
The Aegis Fortress can be configured with independent Admin and User PINs. The Administrator Feature allows enrollment of up to five unique User ID’s and one Administrator, making it a useful business collaboration tool. If the User forgets their PIN, the drive can be unlocked using the Admin PIN. With its Forced Enrollment feature, the Aegis Fortress requires you to create your own unique PIN at first use, ensuring a secure PIN from the get go.Aegis Configurator Compatible
Create custom profiles and simultaneously set up multiple Configurator-compatible devices in a matter of seconds with Apricorn’s Aegis Configurator / Powered Hub bundle.Independent User and Admin PINs
Establishing or changing the drive’s settings can only be done in the Admin mode, using the Admin PIN for authentication. Further, up to four additional User PINs can be programmed to allow access to the data on the drive.Forced Enrollment
The Aegis Fortress is shipped without a factory pre-set PIN meaning that in order for the drive to be set up and used, a unique Admin PIN must first be enrolled at the onset of the initial setup process.User Forced Enrollment
Once a device is configured by the Admin, additional User PINs can be generated by the Admin at that time, or it can also be deployed in a state of USER FORCED ENROLLMENT in which the User is required to establish his or her own User PIN before the drive can be accessed. Super fast USB 3.0 Connection – Data transfer speeds up to 10X faster than USB 2.0
With a super speed USB 3.0 interface, you can now access your files faster than ever before. The Aegis Padlock DT FIPS is also backwards compatible with USB 2.0 and 1.1 ports. Software Free Design – With no admin rights to contend with, the Aegis Padlock DT FIPS is a breeze to implement
With no software installation required for setup or operation and the ability to run on any platform, the Aegis Padlock DT provides stress free deployment in corporate environments. The Aegis Padlock DT FIPS can be configured with independent Admin and User PINs. The Administrator Feature allows enrollment of up to five unique User ID’s and one Administrator. If the User forgets their PIN, the drive can be unlocked using the Admin PIN.
Two Read-Only Modes
The Aegis Fortress has two read-only modes; the first is enabled / disabled exclusively by the Admin within the Admin mode. The second read-only mode can be enabled or disabled by anyone with an enrolled PIN for that particular drive. Ideal for forensic applications where the drive's contents must remain intact and unaltered for later examination, or for when the drive is to be accessed by several people in a public setting.
Unattended Auto-Lock feature
The Aegis Fortress automatically locks once it’s unplugged from the computer's USB port, power to its USB port is interrupted, or after a pre-programmed period of inactivity.
Lock Override Mode
Designated for specific cases in which the drive needs to remain unlocked through USB port re-enumeration such as during reboot, or passing through a virtual machine.
Data Recovery PINs
In the event that a User PIN is forgotten, up to 4 one-time use recovery PINs can be programmed to permit access to the drive’s data by creating a new state of User Forced Enrollment.
Programmable Brute Force Protection
Set the number of incorrect brute force PIN entries allowed (between 4 and 20.)
Programmable MIN / MAX PIN Lengths
For increased PIN complexity and data security, Admin can mandate parameters requiring the PIN length to be any number between the minimum 7 characters, up to the maximum of 16.
Drive Reset Feature
The Aegis Padlock DT also employs a useful drive reset feature, which can be implemented with a unique command. This clears all PINs and data, and creates a new randomly generated encryption key, enabling the drive to be reset and redeployed as many times as needed.
The unattended Aegis Padlock DT can be configured to lock after a pre-determined amount of inactivity time of your choosing. Ideal for protecting your data when you’re away from your desk.
Lock Slot for Additional Security
Compatible with most standard security locks, the Aegis Padlock DT’s lock slot enables the drive to be secured to your desk or other permanent fixture for an added layer of physical security.
Data at Rest Protection
All data, PINs, and encryption keys are always encrypted while at rest.
Brute Force Self Destruct Feature
The Aegis Padlock DT FIPS uses a three pronged approach to protect against a Brute Force attack. The first step is to deny access to the drive until the drive can verify the user PIN. After several incorrect attempts the drive will lock itself, requiring the drive to be plugged in again to input a PIN. This feature blocks automated attempts to enter PIN numbers. Lastly, after a predetermined number of failed PIN entries, the Padlock DT assumes it is being attacked and will destroy the encryption key and lock itself, rendering the data useless and requiring a total reset to redeploy the Aegis Padlock DT FIPS.
Sealed from Physical Attacks by Tough Epoxy Coating
In addition to encrypting all of the PINs, data and the encryption key itself, the Aegis Padlock DT FIPS adds another barrier between your data and a hacker. The encryption chip and circuitry of the Aegis Padlock DT are completely protected by a super tough epoxy compound, which is virtually impossible to remove without causing permanent damage to the electronics. This barrier prevents a potential hacker from accessing the encryption circuitry and launching a variety of potential attacks.
Wear Resistant Key Pad
Designed with protection in mind, the entire Aegis Padlock family incorporates ‘wear resistant’ keypads to hide key usage and avoid tipping off a potential hacker to the commonly used keys.
Variable Timing Circuit (VTC) Technology
Protection against hacker attempts doesn’t stop with Brute Force. Incorporated into the Aegis Padlock’s electronics is Apricorn’s Variable Time Circuit (VTC) technology, working to thwart “timing attacks” aimed at accessing the drive by studying the behavior and infiltrating the Padlock’s electronics.
High Quality Aluminum, Heat Dissipating Enclosure
The Aegis Padlock DT robust design has a solid aluminum enclosure which is ideal for whisking away heat from the rotating drive inside.