Certgate unveils encryption SD cards for mobiles

By Jeremy Kirk, IDG News Service |  Security, BlackBerry, CeBIT 1 comment

Germany company Certgate has released versions of an SD card that encrypt data on Windows Mobile 6.1 smartphones and e-mail on BlackBerry devices.

The products, grouped under the name "Protector," have been approved to handle classified information by Germany's Federal Office for Information Security, which tests IT security products for the government, said Axel Stett, Certgate's chief operating officer. Certgate's cards have been used in tests but have been rolled out for general use this week at the Cebit trade show.

Mobile data security has become a prominent concern for IT administrators, as employees are increasingly using mobile devices to handle sensitive data, posing risks if devices are lost or stolen.

The cards slip into devices that have either an SD (Secure Digital), miniSD or microSD card slot. No software has to be installed on the mobile device, Stett said.

The card has a maximum of 1GB of flash memory. Memory is cheap, but it's hard at this point to put much more memory on a smart-card processor, Stett said. Most customers find 1GB of memory adequate now since the devices are intended for business purposes and not for storing music or photos, he said.

The phone is unlocked by entering a smart-card PIN (personal identification number). If a user enters the wrong code three times, the device is locked, Stett said.

Any data written to a Windows Mobile device, such as calendar and contact information, is hardware-encrypted using a combination of RSA 2048-bit and AES (Advanced Encryption Standard) 256-bit keys, Stett said. There is no need for a kill function since the data is encrypted, Stett said. Some vendors offer software that can remotely render a mobile device useless if it is lost.

Voice calls are not encrypted. The cards support SSL (Secure Sockets Layer) VPN (virtual private network) connection to e-mail servers such as Microsoft's Exchange, Stett said. Administrators can also lock down devices and forbid other applications from being installed, Stett said.

Certgate's card for BlackBerry devices only performs S/MIME e-mail encryption. While BlackBerry e-mail is already encrypted, Certgate says its SD card offers an additional layer of protection. So far, that is Certgate's only feature for the BlackBerry, but the company is looking to eventually offer more features.

"We're in talks with Research In Motion," Stett said. "We need to find out more about their interfaces and their software architecture. They may allow us to put on more applications or they may not. We really don't know at this stage."

However, many people stopping by Certgate's stand this week have been interested in the BlackBerry product. "So many people are interested in getting more security on the BlackBerry," Stett said.

Certgate is also considering making Protector compatible with phones running Google's Android OS depending on if there is a compelling business case, Stett said. The iPhone, however, will be left out since it doesn't have an SD card slot, he said.

Certgate's SD cards have been used in pilots within the German government, such as the Ministry of the Interior. About other 20 German authorities will start using the cards in the next month, Stett said. T-Systems, an integrator that's part of Deutsche Telecom, has partnered with Certgate to sell its technology to the government.

The cards cost about €100 (US$125) for a perpetual license, but pricing may vary according to the volumes ordered, Stett said. More product information is available on Certgate's Web site.

1 comment

    Anonymous 2 years ago
    HI THERE WOW $125 FOR A 1 GB SD CARD WHY IS EATHER A WI-FI SD CARD CALLED EYE-FI SD CARDS HAVE SMALL CAPACITY AND COST MORE I CAN PICK UP I REGULAR 32 GB SD CARD FOR ABOUT $68 TOO $99 SOO IF I CAN GET 2 32 GB SD CARDS THAT PUTS ME AT 64 GB WITH OR WITHOUT THE ENCREPTION WHILE A 4 GB EYE-FI CARD COST $99 DOLERS DO YOU WANT A 4 GB SD CARD FOR $99 OR A 32 GB SD CARD FOR THE SAME PRICE THATS 8 TIMES MORE STORAGE FOR THE SAME PRICEE

      Add a comment

      Post a comment using one of these accounts
      Or join now
      At least 6 characters

      Note: Comment will appear soon after you have activated your account.
      Obscene/spam comments will be removed and accounts suspended.
      The information you submit is subject to our Privacy Policy and Terms of Service.

      ITworld LIVE

      SecurityWhite Papers & Webcasts

      White Paper

      Overcome Top 7 Admin Challenges of Active Directory

      As Active Directory's role in the enterprise has drastically increased, so has the need to secure the data. Gain insight on creating repeatable, enforceable processes that reduces administrative overhead and enables robust, customizable reporting and auditing capabilities. Brought to you by NetIQ.

      White Paper

      Insiders Can Ruin Your Company. Take Action.

      Did you know that 80 percent of threats to an organization come from the inside? The threat from insiders is often overlooked in organizations worldwide. This white paper from NetIQ, discusses key technology solutions that help to prevent and detect insider threats.

      White Paper

      Top Solutions and Tools to Prevent Devastating Malware

      Custom malware frequently goes undetected. According to Forrester Research, the best way to reduce risk of breach is to deploy file integrity monitoring (FIM) tools that provide immediate alerts. This white paper has been brought to you by NetIQ, the leader in solving complex IT challenges.

      White Paper

      Streamline Compliance and Increase ROI

      Streamline, simplify, and automate compliance related activities; especially those that impact multiple business units. This white paper from NetIQ, outlines solutions that will help your business gain the maximum return on investment possible while aligning your compliance programs.

      White Paper

      X-Ray of the PCI Process-4 Proactive Steps

      This white paper from Forrester Research Inc., helps break PCI into understandable components. Security and risk professionals will gain knowledge and insight into creating a compliant and secure IT environment. Follow these four proactive steps now before your next audit. Brought to you by NetIQ.

      See more White Papers | Webcasts

      Answers - Powered by ITworld

      Ask a question

      Ask a Question