Witham Laboratories
Contact Witham
|
 |
 |
Secure Key Injection and PIN Mailer Devices
Witham Laboratories manufactures, sells and supports SID, a stand-alone Secure key Injection Device for injecting secret keys, program images and data into small devices (specifically, PINpads). These devices securely generate and load large RSA keys to PINpads, and fetch triple-DES keys interactively from an internal or external host security module.
SID is based on a PC with a hardware security module, and is highly customisable to suit other platforms and devices. Systems have been operating well in Melbourne, Sydney, Perth, Auckland, and Wellington, some since 1999, providing a reliable key injection service for a number of different PINpad types and customers.
Using SID a PINpad keyload is almost instantaneous - much less time than to fetch the PINpad and plug it in. Minimal or no keyboard work is required - only passphrases are used to logon, in dual control. All actions are logged in a secure audit trail, with secure date and time taken from the hardware board (SID does not use the BIOS clock). We offer to check and comment on the audit trails from time to time at no further charge.
All cryptography and key management in SID is done within secure hardware. New triple-DES keys are generated using state-of-the-art secrecy and randomness techniques. Our clients' proprietary key management schemes have required us to pioneer new key-ciphering techniques not offered by either Eracom or Thales for their respective hardware boards. SID enforces the principles of Dual Control and Split Knowledge, as required by PCI and APCA security standards.
We have also created a number of PIN mailers that are used to drive an Issuers Hardware Security Module (HSM) to enable the printing of customer PINs onto tamper evident mail slips. Our clients have found our knowledge of the HSM interface and operational modes to greatly expedite their projected timelines.
For more details on our key injection or PIN mailer devices, please email us.
|
|