KGRKJGETMRETU895U-589TY5MIGM5JGB5SDFESFREWTGR54TY
Server : Apache/2.4.62
System : FreeBSD fbsdweb2.web.rcn.net 14.1-RELEASE FreeBSD 14.1-RELEASE releng/14.1-n267679-10e31f0946d8 GENERIC amd64
User : www ( 80)
PHP Version : 8.3.8
Disable Function : NONE
Directory :  /domains/ap.belleisle/INFOSEC/products/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Current File : /domains/ap.belleisle/INFOSEC/products/docusec.htm
<HTML>

<HEAD>
<TITLE>Document Security Manager</TITLE>
<META NAME="description" CONTENT="Cerberus Systems, Inc. develops, manufactures and markets Windows� cryptosystems designed to meet or exceed level 1 of FIPS PUB 140-1 with DOD 5220.22-M disk data recovery countermeasures.">
<META NAME="keywords" CONTENT="168-bit keys, access control, ANSI X9.17, computer security, confidentiality, crypto, cryptography, cryptographic, cryptology, cryptosystem, Data Encryption Standard, data security, DES, disk encryption, DOD 5200.28-STD, DOD 5220.22-M, encrypt, encryption, Federal Information Processing Standards, file encryption, FIPS, FIPS 46-2, FIPS 74, FIPS 81, FIPS 140-1, FIPS 180-1, FIPS 186, INFOSEC, integrity, key, NBS Special Publication 500-20, NCSC TG-25, passphrase, password, personal, privacy, private key, Secure Hash Standard, security, Security Requirements for Cryptographic Modules, security software, sensitive-but-unclassified, sensitive information, SHA, SHA1, SHS, software, standards, triple-DES, Windows�.">
</HEAD>

<BODY TOPMARGIN="0" LEFTMARGIN="0" MARGINWIDTH="0" MARGINHEIGHT="0" BGCOLOR="#FFFFFF" TEXT="#000000" LINK="#009966" ALINK="#FF0000" VLINK="#009966">
<BASEFONT  SIZE=2 FACE="Arial,Helv,Helvetica">

<TABLE ALIGN=LEFT BORDER=0 CELLSPACING=0 CELLBORDER=0 CELLPADDING=12 WIDTH=640>
<TR>

<!-- LEFT MARGIN STRIP -->
<TD BGCOLOR="#336666" ALIGN=CENTER VALIGN=TOP>
<FONT SIZE=1>
<a href="../../default.htm"><IMG SRC="../images/web_icon.gif" ALT="CERBERUS HOME ICON" WIDTH=72 HEIGHT=72 BORDER=0 VSPACE=2><br><b><i>CERBERUS</i></b></a>

<P><a href="../index.htm""><IMG SRC="../images/needs.gif" ALT="THE NEED" WIDTH=90 HEIGHT=30 BORDER=0></a><br>
<a href="../privacy.htm">Vulnerabilities</a>
<a href="../threats.htm">Threats</a>
<a href="../forensic.htm">Countermeasures</a>

<P><a href="index.htm""><IMG SRC="../images/products.gif" ALT="PRODUCTS" WIDTH=90 HEIGHT=30 BORDER=0></a><br>
<a href="docusec.htm"><FONT COLOR="#00CC99">Document Security</FONT></a>

<P><a href="../stds/index.htm"><IMG SRC="../images/standard.gif" ALT="STANDARDS" WIDTH=90 HEIGHT=30 BORDER=0></a><br>
<a href="../stds/fip140-1.htm">FIPS PUB 140-1</a><br>
<a href="../stds/sanitize.htm">DOD 5220.22-M</a><br>
<a href="../stds/ncsctg25.htm">NCSC TG-25</a> <br>
<a href="../stds/fip81.htm">FIPS PUB 81</a> <br>
<a href="../stds/fip180-1.htm">FIPS PUB 180-1</a><br>
<a href="../stds/d520028.htm">DOD 5200.28-STD</a><br>


<P><a href="../tutorial/index.htm"><IMG SRC="../images/tutorial.gif" ALT="TUTORIALS" WIDTH=90 HEIGHT=30 BORDER=0></a><br>
<a href="../tutorial/winfosec.htm">INFOSEC</a><br>
<a href="../tutorial/keys.htm">Cryptosystems</a><br>
<a href="../tutorial/phrases.htm">Passphrases</a><br>
<a href="../tutorial/leaks.htm">Windows� Leaks</a><br>
<a href="../tutorial/system.htm">System Settings</a>

<P><a href="../download/index.htm"><IMG SRC="../images/download.gif" ALT="DOWNLOADS" WIDTH=90 HEIGHT=30 BORDER=0></a><br>

<P><HR WIDTH=84>

<P><a href="mailto:[email protected]">QUESTIONS?
<br><IMG SRC="../images/email2.gif" ALT="E-MAIL" WIDTH=61 HEIGHT=31 BORDER=0></a><br>

<P><br><IMG SRC="../images/amex_ok.gif" ALT="AMEX WELCOME" WIDTH=51 HEIGHT=68 BORDER=0>

</FONT>

</TD>
<!-- END LEFT MARGIN STRIP  -->

<!-- MAIN SECTION -->
<TD ALIGN=LEFT VALIGN=TOP>

	<!-- Title Bar -->
<TABLE BORDER=0 CELLSPACING=0 CELLPADDING=0 WIDTH=500>
<TR><TD>
		<!-- Right-justified Logotype -->
<TABLE ALIGN=RIGHT BORDER=0 CELLSPACING=0 CELLPADDING=0>
<TR><TD><FONT COLOR="#006633" SIZE=3><B><I>CERBERUS <FONT SIZE=1>SYSTEMS, INC.</FONT></I></B></FONT></TD></TR><TR><TD ALIGN=CENTER><FONT COLOR="#999933" SIZE=1><B><I>
<!--forensic software countermeasures-->
<!--INFORMATION SECURITY TOOLS-->
<!--INFOSEC for Personal Computers-->
<!--INFOSEC Products for Windows&reg-->
<!--INFOSEC Tools for PCs & Laptops-->
<!--personal information security tools-->
Windows&reg-compatible encryption
</I></B></FONT></TD></TR>
</TABLE>
		<!-- End Logotype -->
</TD></TR>
<TR ALIGN=CENTER><TD WIDTH=490>
		<!-- Centered Page-Title -->
<TABLE BORDER=0 CELLSPACING=0 CELLPADDING=10>
<TR><TD ALIGN=CENTER><FONT COLOR="#CC3300" SIZE=5><B>
			<!-- Title Text-->
DOCUMENT SECURITY MANAGER�
			<!-- End Title Text -->
</B></FONT></TD></TR>
</TABLE>
		<!-- End Page-Title -->
</TD></TR></TABLE>
	<!-- End Title Bar -->


	<!-- Content -->
<FONT SIZE=2>

<TABLE BORDER=0 CELLSPACING=0 CELLBORDER=0 CELLPADDING=8 WIDTH=490>
<TR><TD><CENTER><img src="../images/docmgr95.gif" width=209 height=56 alt="for Windows 9.x/NT"><img src="../images/space.gif" width=32 height=64 valign=center><img src="../images/docmgr3x.gif" width=209 height=64 alt="for Windows 3.x"><br><img src="../images/space.gif" width=450 height=4><br></CENTER>
<FONT SIZE=1 COLOR="#006633">This software cryptographic module has been designed to meet or exceed Security Level 1 of FIPS PUB 140-1. It is fully compliant with FIPS PUBs 46-3, 74, 81 and 180-1, as well as ANSI X9.17, and incorporates validation tests from those standards and from NBS Special Publication 500-20 as built-<br>in self-test routines. Its incorporation of high-grade cryptographic algorithms ( specifically, CBC-mode triple-DES with 168-bit keys ), and its lack of a key recovery mechanism, preclude its licensing for export from the United States under current Export Administration Regulations ( 15 CFR 730 - 774 ). The design of this software incorporates no covert channels to intentionally leak keying information. 
</FONT></TD></TR>
</TABLE>

<HR SIZE=1 WIDTH=50% ALIGN=CENTER>

<P><TABLE BGCOLOR="#CCCCCC" BORDER=2 CELLSPACING=0 CELLBORDER=0 CELLPADDING=5 WIDTH=503><TR><TD>
<TABLE BORDER=0 CELLSPACING=0 CELLBORDER=0 CELLPADDING=0>
<TR ALIGN=CENTER><TD><img src="../images/lockfile.gif" width=32 height=32 border=0 align=left><img src="../images/openfile.gif" width=32 height=32 border=0 align=right><FONT SIZE=2>If you've ever held a Security Clearance, you'll recognize the image of<BR>the Classified document safe used in our <i>Secure</i> and <i>Open</i> symbols.</FONT></TD></TR>
<TR><TD><FONT SIZE=2>Once you've dragged-and-dropped a group of files onto Document Security Manager, they are "classified" as sensitive <i>documents</i> whose security status will be monitored until they are <i>Destroyed</i> or <i>Declassified</i>. The program will automatically  re-encrypt all such documents you've decrypted. Unlike e-mail encryption software, it will <i>also</i> shred all those extra copies that Windows� made while you were working on them.
</FONT></TD></TR></TABLE>
</TD></TR></TABLE>

<P><TABLE BORDER=0 CELLSPACING=0 CELLBORDER=0 CELLPADDING=4 WIDTH=500><TR>
<TD><img src="../images/docbatch.gif" width=349 height=404 border=0 alt="Document Inventory"></TD>
<TD><P ALIGN=CENTER><FONT SIZE=4 COLOR="#006633"><B><U>EASY to USE</U></B></FONT>
<P><FONT SIZE=2><i>Document Inventory</i> gives you centralized access to all of your sensitive files, while inhibiting identification of encrypted files for <i>traffic analysis</i> by type or by name.  All your encrypted files are left in their original folders, with unchanged names and type-extensions. Files you choose to decrypt are opened automatically for you by their associated programs, after they have passed an SHA1 integrity check. All such decrypted files are automatically re-encrypted during program shut-down. </FONT></TD>
</TR></TABLE>

You can Send a copy of a Document with your private masterkey replaced by one generated from another username-plus-passphrase for communications with another user. This copy is automatically sent to your MAPI-enabled e-mail program which opens a new message with it attached. Clicking upon such an attachment on a received e-mail automatically prompts Document Security Manager to decrypt it.

<P><TABLE BORDER=0 CELLSPACING=0 CELLBORDER=0 CELLPADDING=5 WIDTH=500><TR>
<TD><FONT SIZE=4 COLOR="#006633"><B><U>PLUGS WINDOWS� LEAKS</U></B></FONT>
<P><FONT SIZE=2>All discarded files are automatically <i>Sanitized</i> per DOD 5220.22-M by multiple disk overwriting (including all cluster tails), and all cache buffers are flushed in order to prevent Windows� from ignoring the overwrites. Functions are also provided to <i>Clear</i> the Windows� swapfile of leaked passphrases or un-encrypted text, and to Clear your disk of the "temporary" copies that Windows� makes of any document that it prints-out. Such "deleted" data <i>scavanged</i> by Windows� into the tails of new files, and by Word�, Excel� and similar programs into the interior of their <i>OLE files</i>, are also Cleared. These are countermeasures to the <i>forensic software</i> that exploits such Windows� leaks to "recover" files encrypted with most e-mail encryption software.</FONT></TD></TR></TABLE>

<P><TABLE BORDER=0 CELLSPACING=0 CELLBORDER=0 CELLPADDING=7 WIDTH=488><TR>
<TD><P ALIGN=CENTER><FONT SIZE=4 COLOR="#006633"><B><U>SELF-TESTING</U></B></FONT>
<P><FONT SIZE=2>Not only is each file's integrity checked upon decryption, but the program itself is tested for tampering (with secure hashes per FIPS 180-1). In addition to cipher and hash validation tests, you can also perform FIPS 140-1 tests on the user-seeded key generator that also produces bit streams for disk overwriting per DOD 5220.22-M.<br></FONT> </TD>
<TD><img src="../images/fips_140.gif" width=330 height=300 align=right border=0 alt="FIPS PUB 140-1 Key Generator Tests"></TD>
</TR></TABLE>

<P><TABLE BORDER=0 CELLSPACING=0 CELLBORDER=0 CELLPADDING=7 WIDTH=500><TR>
<TD><FONT SIZE=4 COLOR="#006633"><U><B>CRASH-PROOF and UPGRADE-PROOF</B></U></FONT>
<P><FONT SIZE=2>Unlike software that encrypts everything on your disk, there are no decryption delays in accessing dynamic link libraries or drivers to crash programs or your system. Our encryption won't interfere with backup software, or cause long delays when you want to shut-down your system. If power transients or other programs crash your system during encryption or decryption of a file, it will <i>not</i> be damaged.
<P><FONT SIZE=2>Any Document (or Inventory file) encrypted by any version of Document Security Manager (even the original 16-bit version), can be decrypted by any other version running on any supported platform (Windows 3x, Windows 9x or Windows NT4.0).</FONT></TD></TR></TABLE>

<P><TABLE BORDER=0 CELLSPACING=0 CELLBORDER=0 CELLPADDING=7 WIDTH=500>
<TR>
<TD><img src="../images/bsecure.gif" align=left height=48 width=128 alt="ENCRYPTION"><FONT SIZE=2 COLOR="#006633">More on our<br>Triple-DES<br><a href="docusec2.htm"><B><U>ENCRYPTION</U></B></a></TD>
<TD><img src="../images/bdestroy.gif" align=left height=48 width=128 alt="SANITIZING"><FONT SIZE=2 COLOR="#006633">More on our<br>DOD 5220.22-M<br><a href="docusec3.htm"><B><U>SANITIZING</U></B></a> </TD>
</TR></TABLE>

<P><HR SIZE=1 WIDTH=50% ALIGN=CENTER>

<P><TABLE BORDER=0 CELLSPACING=0 CELLBORDER=0 CELLPADDING=7 WIDTH=500>
<TR><TD ALIGN=RIGHT><FONT SIZE=4 COLOR="#006633"><B>PROFESSIONAL</B></FONT></TD><TD ALIGN=LEFT><FONT SIZE=4 COLOR="#006633"><B>VERSION</B></FONT></TD></TR>
<TR><TD><img src="../images/doclabel.gif" width=255 height=226 align=left border=0 alt="Shadow Directory">
</TD><TD><FONT SIZE=2>For users with large numbers of encrypted files or the obligation to preserve the data for others, the Professional version also includes encrypted document labels and the ability to generate <i>shared secret</i> keyshare diskettes. The labeling creates a <i>shadow directory</i> to hide sensitive names. Multiple keyshare diskettes allow emergency access by multiple trusted parties acting together, but any one diskette is useless to attackers. Both features are solely at the user's discretion.</FONT></TD></TR>
</TABLE>
<TABLE BORDER=0 CELLSPACING=0 CELLBORDER=0 CELLPADDING=7 WIDTH=500><TR><TD><FONT SIZE=2>There is also a pop-up shredder window for easy drag-and-drop destruction of groups of files by <i>sanitizing</i> per DOD 5220.22-M.</FONT></TD><TD><img src="../images/shredder.gif" width=275 height=70 align=right border=0 alt="Drag-and-Drop Shredder"></TD></TR></TABLE>
<TABLE BORDER=0 CELLSPACING=0 CELLBORDER=0 CELLPADDING=7 WIDTH=500><TR><TD><img src="../images/phrasgen.gif" width=245 height=175 align=left border=0 alt="Pseudo-random Passphrase Generator"></TD><TD><FONT SIZE=2>A cryptographically strong (14 bits per word) nonsense-phrase generator is also included, for users who need to change passphrases often. The ANSI X9.17 key generator addresses words pseudo-randomly from a 16K-word dictionary. With the 1000 triple-DES encryptions of our masterkey set-up, four such words yield 30 characters with a DES <i>workfactor</i> of almost 68 bits vs 51 bits for an English phrase. </FONT></TD></TR></TABLE>
<TABLE BORDER=0 CELLSPACING=0 CELLBORDER=0 CELLPADDING=7 WIDTH=500><TR><TD><FONT SIZE=2>Since the pseudo-random nonsense-phrase is merely accepted with a mouse-click, this also provides a way to securely change a compromised passphrase, even in the presence of a keyboard sniffer on a compromised machine. Keyboard sniffers can be blocked from intercepting the passphrase by using a pair of your emergency access keyshare diskettes, rather than keying-in the passphrase for authentication. <p>These features are included in the Professional and Corporate versions. We provide a Personal version without these features, at a lower cost, for individuals who don't handle many sensitive files or often need to generate secure passphrases.  </FONT></TD></TR></TABLE>

<P><HR SIZE=1 WIDTH=50% ALIGN=CENTER>

<P><TABLE BORDER=0 CELLSPACING=0 CELLBORDER=0 CELLPADDING=7 WIDTH=500>
<TR><TD ALIGN=CENTER><FONT SIZE=4 COLOR="#006633"><B>EASY TO INSTALL</B></FONT></TD></TR>
<TR><TD ALIGN=LEFT><FONT SIZE=2>Just download and run the free demonstrator installation package for your system: <a href="../download/docmgr32.exe"><b><u>docmgr32.exe</u></b></a> for Windows 95, Windows 98, NT4/SP3+ or NT5(Win2K) platforms; or <a href="../download/docmgr3x.exe"><b><u>docmgr3x.exe</u></b></a> for Windows 3.1, 3.11 or Windows for Workgroups 3.11 (requires Microsoft's free <a href="ftp://ftp.microsoft.com/Softlib/MSLFiles/pw1118.exe"><u>Win32s</u></a> upgrade for 16-bit systems.) If, for some reason you can't use the Win32s package on your Win3x system, there is a (slower) <a href="../download/docmgr16.exe"><u>16-bit version.</u></a> 
<BR><FONT SIZE=1>( <b>NOTE: </b>Do <u>not</u> try to install Win32s on Win95/98/NT - these are 32-bit systems, which do not need it. )</FONT>
</TD></TR>
</TABLE>

<TABLE BORDER=0 CELLSPACING=0 CELLBORDER=0 CELLPADDING=5 WIDTH=500><TR>
<TD><img src="../images/swapcfg.gif" width=360 height=315 align=left border=0 alt="Security Configuration">
</TD><TD><FONT SIZE=2>Forensic software exploits Windows� TEMP space and swapfile leaks to bypass even the strongest file encryption. When Document Security Manager starts, it analyzes your system settings. If you permit it to, it can reconfigure the relevant system settings so as to maximize the effectiveness of its forensic software countermeasures.</FONT></TD>
</TR></TABLE>

<BLOCKQUOTE><FONT COLOR="#006633" SIZE=1>
<b>NOTE: </b>Windows 4.9/<i>Windows ME</i> will not permit the installation of 16-bit TSRs, such as Microsoft's own RAM disk from Windows 4.0/<i>Windows 95</i> and Windows 4.1/<i>Windows 98</i>. As our built-in utility for optionally configuring TEMP space as a RAM drive on non-NT platforms relies on Microsoft's RAMDRIVE.SYS, that option will be unavailable under ME. (There are third party 32-bit RAM drives that some of our users are using instead, but our products' configuration utilities don't automate their set-up.)
</FONT></BLOCKQUOTE>

<TABLE BORDER=0 CELLSPACING=0 CELLBORDER=0 CELLPADDING=7 WIDTH=500>
<TR><TD><FONT SIZE=2>Just use <i>Windows Explorer</i> or <I>File Manager</i> to drag-and-drop groups of files (with the same desired security label) onto Document Security Manager, and let it keep track of them anywhere on your disk. On shut-down, it will automatically re-encrypt any you left decrypted and <i>clear</i> Windows' copies from your swapfile and TEMP space.
<P>The demonstrators have been compiled without the private masterkey generating function necessary for security. They include all the other cryptographic functions of the full products, but documents they encrypt can be unconditionally decrypted by anyone with a demonstrator. Their <i>zeroized</i> masterkeys let you examine the "look and feel" of their user interfaces and test how fast the encryption functions will execute on <i>your</i> system, while letting us comply with US export controls.
</FONT></TD></TR></TABLE>

<BLOCKQUOTE><FONT COLOR="#006633" SIZE=1>
<b>NOTE:</b> Our individually licensed software cryptosystems incorporate high-grade ciphers (specifically, CBC-<wbr>mode triple-<wbr>DES with 168-<wbr>bit keys).  They do not incorporate either overt <i>Law Enforcement Access Fields</i> or covert channels to leak keying information.  They are thus considered "encryption items" - Category EI in the Commerce Control List, 15 CFR 774, subject to the Export Administration Act, 50 USC 2401.  The penalty for their export from the United States without a BXA license, except to Canada is a fine, not to exceed $1,000,000 and/or a prison term, not to exceed 10 years, for each offense.
</FONT></BLOCKQUOTE>

<TABLE BORDER=0 CELLSPACING=0 CELLBORDER=0 CELLPADDING=7 WIDTH=500>
<TR><TD><FONT SIZE=2>The automatically-installing demonstration version is overwritten with a Licensed version "updater," from an e-mailable (less-than-100K, but only to US or Canadian e-mail servers) self-extracting zip-archive, and any files previously encrypted with the demonstration version made secure by the single-step, automatic re-encryption of all encryption keys with the private masterkey generated from your passphrase.</FONT></TD></TR>
</TABLE>

<P ALIGN=CENTER>
<a href="order.htm"><FONT COLOR="#006633" SIZE=4><B><u>TO ORDER</u></B></FONT></a><br>(Credit Card or Check)<br><br><a href="http://www.americanexpress.com/cards/online_guarantee"><img src="../images/amex.gif" WIDTH=111 HEIGHT=46 border=1></a>

</FONT>
	<!-- End Content --->

	<!-- Standard Footer --->
<CENTER>
<P>
<FONT SIZE=2 COLOR="#006633"><B><i>
Cerberus Systems, Inc. develops, manufactures and markets<BR>
software cryptosystems designed to level 1 of FIPS PUB 140-1<BR>
with DOD 5220.22-M disk data recovery countermeasures.
</i></B></FONT>
<P><HR SIZE=1>
<FONT SIZE=1 COLOR="#CC3300">
The Cerberus logo and the <i>...Security Manager</i> product names are trademarks of Cerberus Systems, Inc.<BR>
&copy Copyright 1997-99, all rights reserved.
</FONT>
<HR SIZE=1>
</CENTER>
	<!--- End Standard Footer --->

</TD>
<!-- END MAIN SECTION -->

<!-- PADDING CELL -->
<TD>
<!-- right margin = 2 x cellpadding -->
</TD>
<!-- END PADDING CELL -->

</TR>
</TABLE>

</BODY>

</HTML>

Anon7 - 2021