A fast and secure solution: high speed encryption
combined with quantum key distribution

IDQ’s Cerberis solution offers a radically new approach to network security, combining the sheer power of the Centauris high-speed layer 2 encryption engines with the unconditional security of quantum key distribution (QKD) technology.

Dedicated Centauris appliances perform high-speed encryption based on the proven Advanced Encryption Standard (AES). Point-to-point wire-speed encryption with low latency and no packet expansion is made possible by operating at the layer 2 of the OSI model.


The exchange of secret encryption keys, the Achilles heel of classical cryptography products is performed in a separate appliance, called the QKD server. A fundamental principle of quantum physics - observation causes perturbation - is exploited to exchange secret keys between two remote parties over an optical fiber - the system ensures that no eavesdropper has intercepted the communication, ensuring unprecedented security. The QKD server autonomously produces, manages and distributes secret keys to one or more encryption engines.



Main Features

  • Protects against data interception
  • Future-proof security: quantum keys ensure long-term data protection

  • Scalability: encryptors can be added as the network evolves

  • Versatility: encryptors for different protocols can be mixed

  • Cost-effectiveness: one quantum key server can distribute keys to several encryptors





Four protocols are supported:

  • Ethernet Encryption: 10/100, 1Gbps, 10 Gbps
  • Fibre Channel Encryption: 1G, 2G, 4G
  • SONET/SDH Encryption: OC-3, OC-12, OC-48, OC-192
  • ATM Encryption: OC-3, OC-12


Taking the vulnerability out of the key exchange process

The Achilles heel of existing cryptography solutions is the key exchange process. While conventional key distribution techniques rely on public key cryptography or manual exchange, and therefore offer only conditional security, the secrecy of keys distributed by quantum cryptography is guaranteed in an absolute fashion by quantum physics.

Quantum Key Distribution is a technology that exploits a fundamental principle of quantum physics - observation causes perturbation - to exchange cryptographic keys between two remote parties over optical fiber networks with unprecedented security.

Cerberis uses a patented and well- documented auto-compensating optical platform to secure key exchange over distances of up to 100 km.


A scalable solution that grows with your needs

The Cerberis solution is cost-effective as it evolves with the network. Additional encryption engines can be added to a QKD server at any time, without network interruption. This allows for a scalable deployment, adding more encryption appliances whenever necessary to increase the bandwidth or to add additional protocols, without upgrading the QKD server. With the Cerberis solution, infrastructure investments last longer and the total cost of ownership is reduced.

Installation and management is a breeze

The Cerberis solution integrates seamlessly into existing fiber-optic network infrastructures. A simple installation procedure ensures rapid deployment. State of the art management and monitoring tools, such as on-line singlepoint monitoring via Simple Network Management Protocol (SNMP) and off-line web-based applications, give network administrators the capability to centrally monitor and manage the appliances of the Cerberis solution within an enterprise network.

Regulatory compliance? Get peace of mind with the most technologically advanced solution

Compliance regulations, such as BASEL II & III, PCI-DSS, SOX, HIPAA and GLBA, are mandating companies to protect their private data. The scope of threats in today's information society is vast and growing. Companies securing their fiber-optic network with the Cerberis solution effectively raise, to an unprecedented level, the security of communications between their remote sites. It gives them the peace of mind of knowing that they are using the latest in cryptographic technological evolution with long-term data protection.

