Full Command and Control Over Secure Communications Networks
Apriva’s Enterprise Gateway is a licensed private network solution that manages an unlimited number of wireless handset users. Users achieve secure communications by combining the Enterprise Gateway with:
- Apriva’s BT-200/BT-200T Bluetooth® smart card reader
- Apriva’s AprivaMail™ application
- Apriva’s Authentication device middleware
- Apriva’s management servers
- Apriva's secure gateways
The Apriva Enterprise Gateway is the authenticated gateway between wireless handheld units and customer internal networks, known as enclaves. The gateway provides the ability for handhelds to change their IP addresses without interrupting the secured communication channel between the handheld and the enclave. This is accomplished for encrypted, unclassified communication as well as encrypted classified communication. While encrypted classified traffic can transit the gateway, the gateway itself is unclassified. Other than messages for connection setup, all traffic transiting the gateway is encrypted, either using AES-256 for sensitive but unclassified traffic or using HAIPE (High Assurance Internet Protocol Encryptor) encryption for classified traffic.
Enterprise Gateway Overview
Secure: Trusted by governments for keeping sensitive communications secure
Powerful: Full command and control of secure mobile communications networks
Flexible: Customers tailor gateway to their needs
Scalable: Grows linearly as your enterprise and users expand
Manageable: Ease of operation, administration, management, and provisioning
Apriva Enterprise Gateway Description
Redundant, Private Wireless Carrier Connections:
- Private connection from the Apriva Enterprise Gateway to multiple and diverse wireless carrier networks to mitigate public Internet attacks.
- Single entry point for enclaves requiring multiple, diverse wireless network services.
- Managed end-to-end service with common reliability and security characteristics from the mobile device all the way through to delivery to the enclave demarcation point.
Simplified Secure Network Topology:
- Provides centralized access point between wireless devices and enclaves
- Centralized perimeter security via firewall and active intrusion protection
Command and Control Over:
- Wireless devices and enclave access control
- Multi-protocol traffic routing
- Geo-diverse redundancy and failover levels
- Physical network security access
- Network security authentication
Multi-Protocol Routing
- Supports unclassified and classified (HAIPE) communications.
- Manages dynamic wireless carrier mobile device IP changes to provide:
- True “push” email delivery to the mobile devices
- Static IP address space is required for proper HAIPE connectivity, even when the underlying carrier networks cannot support static IP addresses
- Routes both classified and non-classified protocols
- Provides an infrastructure and framework to add other services over time
Administration Server & Network Monitoring
- Mobile device provisioning/control by enclave administrators
- Detailed audit logs (errors, provisioning/control changes, trace)
- Traffic metrics
- SNMP alerts and email notifications
Apriva Enterprise Gateway Benefits
- Direct connections to wireless carriers, reducing the risk of remote attack by enemy forces
- Private and unpublished IP space to mitigate distributed denial of service attacks
- Eliminates the need to open dangerous ports to the public Internet at customer enclaves to support wireless syncing
- Provides a choke point which can be used to immediately disconnect and block a lost, stolen or compromised PDA
- Avoids third party dependencies and outages
- No queuing or storing of messages (intelligent routing)
- No mix of non-enterprise traffic
- Active robust intrusion protection
- Direct multi wireless carrier APN (Access Point Name) connections
- Scales linearly as the numbers of networks and enclaves increases
- Provides interconnection between dissimilar network technologies such as GSM/GPRS and CDMA
