Interactive Link
   HOME

TheInfoList



OR:

The Interactive Link is a suite of hardware and software products designed for application within areas where network separation is implemented for security reasons. Manufactured and marketed by
Tenix Tenix is a privately owned Australian company involved in a range of infrastructure maintenance and engineering products and services to the utility, transport, mining and industrial sectors in Australia, New Zealand, the Pacific Islands, and the ...
Datagate, the Interactive Link hardware products have been evaluated to the highest level under international security criteria with a strong focus on maintaining the confidentiality of the secure network. The technology underlying the products is drawn from Starlight Technology, developed by the Australian
Defence Science and Technology Group The Defence Science and Technology Group (DSTG) is part of the Australian Department of Defence dedicated to providing science and technology support to safeguard Australia and its national interests. The agency's name was changed from Defence ...
.


History

The Interactive Link product suite is a commercialized version of Starlight Technology. This technology, developed as a way to transfer data from a lower classification (Low Side) network to a highly classified (High Side) computer without compromising sensitive information, was formed inside the Australian DSTO as a research project. The technology also allowed users to view and interact on a Low Side network from a High Side computer. The Starlight Technology included a
data diode A unidirectional network (also referred to as a unidirectional gateway or data diode) is a network appliance or device that allows data to travel in only one direction. Data diodes can be found most commonly in high security environments, such as ...
, accompanying server software and Desktop-based equipment. Seen as having commercial merit and after a prototype was developed, the technology was licensed to Vision Abell (later acquired by
Tenix Tenix is a privately owned Australian company involved in a range of infrastructure maintenance and engineering products and services to the utility, transport, mining and industrial sectors in Australia, New Zealand, the Pacific Islands, and the ...
) in 1996 for development and supply to Australian government under the brand “Interactive Link”. The objective of these products was to increase productivity and to reduce the deskspace required by users working on more than one network, while not compromising the existing security. In 2002, DSTO signed a long-term agreement for the newly formed Tenix Datagate division of Tenix to market, manufacture and further develop the Interactive Link product worldwide. Tenix Datagate subsequently set up offices in the UK and US in addition to their Australian presence. Tenix Defence was acquired by
BAE Systems Australia BAE Systems Australia, a subsidiary of BAE Systems plc, is one of the largest defence contractors in Australia. It was formed by the merger of British Aerospace Australia and GEC-Marconi Systems and expanded by the acquisitions of Armor Holdings ...
in 2008, including ownership of the Interactive Link products. Due to its high level of certification, the Interactive Link product suite has been deployed to numerous western nations.


Products

The Interactive Link Product Suite includes the following: The Interactive Link Data Diode Device (IL-DD) – a trusted platform providing a strictly unidirectional data path between two networks. The device allows the transmission of information from Low Side to High Side networks but not vice versa. Data is transmitted by means of optical fibre technology that reduces the risk of data interception by
TEMPEST Tempest is a synonym for a storm. '' The Tempest'' is a play by William Shakespeare. Tempest or The Tempest may also refer to: Arts and entertainment Films * ''The Tempest'' (1908 film), a British silent film * ''The Tempest'' (1911 film), a ...
attack. The Interactive Link Keyboard Switch (IL-KBS) – The IL-KBS is a desktop device that allows users of a High Side computer to access a Low Side Thin Client session. Used in conjunction with the IL-DD, no High Side Data is sent down to the Low Side network. Users are able to view and interact with the Low Side inside a window on their High side computer. Interactive Link Multiple Computer Switch (IL-MCS) – a highly secure KVM to switch between two desktop computers of differing security classification levels from a single keyboard, mouse and monitor. Its level of certification (ITSEC E6) means it is the most thoroughly evaluated KVM presently available. Interactive Link Data Pump Applications (IL-DPAs) – These are software applications that send file, email, clipboard and file data over the IL-DD. These may be used independently of the desktop devices. These consist of the File Transfer Application, Email Transfer Application, Clipboard and File Transfer Application and Data Forwarding Application.


Evaluation/certification

High levels of evaluation under relevant security criteria are distinctive features of the Interactive Link hardware. They have been certified under the following criteria: ITSEC – The IL-MCS, IL-DD and IL-KBS have all been evaluated to the level of E6 under ITSEC, the highest level possible under this criteria. This evaluation was performed under the Australian Information Security Evaluation Programme, and mutually recognised in a large number of nations.
Common Criteria The Common Criteria for Information Technology Security Evaluation (referred to as Common Criteria or CC) is an international standard (ISO/IEC 15408) for computer security certification. It is currently in version 3.1 revision 5. Common Criteria ...
– The IL-DD has been certified to EAL7 under the Common Criteria in the United States, the highest level possible.IL-DD Entry in the US Common Criteria Validated Products List
/ref> The IL-KBS has been certified to EAL5.


Potential uses of interactive link products

The IL-KBS and IL-MCS units are used primarily where users need to access two separate networks from a single desktop while maintaining strict security separation between the two domains. Examples of this would include accessing Classified and Unclassified networks in a military setting. The IL-DD and IL-DPAs are versatile in their applicability, primarily they are used where data in various forms needs to be sent in a strictly unidirectional manner. This could include automated sending internet data to an otherwise isolated network, a unidirectional email gateway and one-way dispatch of log files for secure storage. Another potential setting is where the IL-DD is "turned around" to push data from a secure source to an insecure destination.


References

{{reflist Networking hardware