Black Box ET1000A, ET0010A, EncrypTight Policy Enforcement Point, Single Etkms for multiple sites

Models: EncrypTight ET0100A ET0010A ET1000A

1 352
Download 352 pages 21.02 Kb
Page 20
Image 20

Distributed Key Topologies

Figure 3 Single ETKMS for multiple sites

Figure 4 illustrates an EncrypTight deployment using multiple ETKMSs. With large, complex networks that have hundreds of PEPs, you might want to use multiple ETKMSs. Each ETKMS distributes keys for the PEPs it controls. For example: ETKMS 1 distributes the policies and keys to PEPs A, B, and C. ETKMS 2 distributes the policies and keys to PEPs D and E. ETKMS 3 distributes the policies and keys to PEPs F and G.

Figure 4 Multiple ETKMSs in a network

Policy Enforcement Point

EncrypTight enforcement points (ETEPs) are encryption appliances that provide policy enforcement functions, and are referred to generically as PEPs (policy enforcement points). According to the policies distributed by the ETKMSs, the PEPs can encrypt and decrypt traffic, send traffic in the clear, or drop traffic. Each PEP can be used in multiple policies simultaneously.

EncrypTight User Guide

21

Page 20
Image 20
Black Box ET1000A, ET0010A, EncrypTight, ET0100A manual Policy Enforcement Point, Single Etkms for multiple sites