End System Security
End System Security is one of the
research areas of the centre. Integrated end system based security
solutions EnSAFE
and RealSAFE
were developed through research outcome which provides authentication,
confidentiality, access control and integrity services for TCP/IP
applications in closed user groups. These solutions were designed by
interfacing with the transport layer of the target operating system.
EnSAFE (End System Suraksha
Framework) is integrated end system based security software.
EnSAFE establishes secure channel for TCP based applications by
supporting various services like authentication (user and machine),
access control, confidentiality and integrity. EnSAFE is available for
Windows and Linux environments. This solution addresses the problems
like IP spoofing, MAC spoofing, sniffing attacks, Flooding attacks and
Worm/Trojan attacks
Features of EnSAFE:
- End to End Security
- Application Transparent
- Confidentiality and Integrity for Network Communication
- Session wise Key Exchange
- Machine Authentication based on signature generated from various hardware and software parameters of End system like hard disk serial number, processor ID, IP address, MAC address, RAM details, OS details etc
- Role Based Network Access Control
- Multi-layered Defense
- Plug-in support for Crypto Algorithms
- Plug-in support for User Authentication mechanisms
- Provides Security for all TCP based applications
- Runs on Windows and Linux
- Centralized policy administration and user friendly GUI
- Indigenous Technology
Technical Architecture of
EnSAFE
RealSAFE (Real-time Suraksha
Framework) is end system based security software. This solution
establishes a secure channel for UDP based audio and video streaming
applications and is available for Windows and Linux environments. This
solution addresses the problems like IP spoofing, MAC spoofing,
Sniffing attacks, Flooding attacks, Illegal participation and
accountability and Worm/Trojan attacks.
Features of RealSAFE:
- End to End Security
- Application Transparent
- Confidentiality, Integrity and Reliability for Real-time audio and video streaming applications
- Session wise key setup through RealSAFE server
- Machine Authentication based on signature generated from various hardware and software parameters of End system like hard disk serial number, processor ID, IP address, MAC address, RAM details, OS details etc
- Role Based Network Access Control
- Multi-layered Defense
- Plug-in support for Crypto Algorithms
- Plug-in support for User Authentication mechanisms
- Provides Security for all UDP based applications
- Runs on Windows and Linux
- Centralized policy administration and user friendly GUI
- Indigenous Technology


