• Contact
  • Customer Portal
  • Partner Portal
  • Jobportal
  • Search
  • DE
LogoGenua Logo
  • Solutions
    IT Security Solutions

    Contact

    + 49 89 991950-0info@genua.deContact us
    • Firewalls & Gateways

      • High Resistance Firewall genugate
      • High Resistance Firewall genugate Virtual
      • Firewall & VPN-Appliance genuscreen
      • Industrial Firewall genuwall
    • VPN

      • Firewall & VPN Appliance genuscreen
      • High-Speed VPN Appliance genuline
      • Adva FSP 150-XG118Pro
      • Highly Secure Certificate Solution genutrust
    • Remote Maintenance

      • Remote Service Solution genubox
    • Mobile Working

      • Comprehensive Security Solution genusecure Suite
      • VPN Software Client genuconnect
      • VPN Software Client genuconnect Enterprise
      • Zero Trust Application Access genusphere
      • ECOS SecureBootStick SX
    • Diodes

      • Data Diode cyber-diode
      • Data Diode vs-diode
    • Internal Network Security

      • IDS & IPS cognitix Threat Defender
    • Central Management Station genucenter

      • Central Management Station genucenter

    Comprehensive Security Solution genusecure Suite

    Comprehensive solution for workplaces complient with the classification level German VS-NfD
    [Translate to English:]
  • Fields of Use
    Fields of Use

    Contact

    + 49 89 991950-0info@genua.deContact us
    • Public Sector

      IT Security Solutions for Authorities and Public Institutions

    • Critical Infrastructure

      Protection of Critical Infrastructures and Sensitive Systems

    • Defense

      IT Security for Military Networks and Data Communications

    • Classified Industry

      IT Protection for Projects with Confidentiality Requirements

    • IT Security for Mechanical and Plant Engineering

      IT Security for Networked Machines and Systems

    Fotocollage zur High Resistance Firewall genugate (Verwendung nur für die Presse)

    Our sales team will be happy to answer your enquiries. Let us advise you!

    Get in Touch

  • Service & Support
    Service & Support

    Contact

    + 49 89 991950-0info@genua.deContact us
    • IT Security Services

      On-site Support, 24/7 Hotline and Regular Update Services

    • Trainings

      Product and Solution Trainings for Your Team - Practical and Up-to-date

    • Hacking Bootcamp

      Improve the Defence of Your Systems and Get to Know the Techniques of Real Hackers

  • Topics & Trends
    Topics & Trends

    Contact

    + 49 89 991950-0info@genua.deContact us
    • Topics

      • Security by Design
      • Zero Trust
      • AI Security
    • Knowledge Base

      Case Studies, White Papers, Specialist Articles, Interviews and Insights from the IT Industry

    • Research Projects

      Whether it's Post-Quantum Cryptography or a Secure Cloud - Here You Will Find an Overview of our Current Research Projects

  • Partners
    Partners

    Contact

    + 49 89 991950-0info@genua.deContact us
    • Sales Partner

      Benefit from the expertise of our qualified Sales Partners

    • Partnerlocator

      Find your genua Sales Partner in our overview

    Three employees in a sales dialogue

    In our Partner Portal we provide services to support you in your sales activities.

    To the Partner Portal

  • Career
    Career

    Contact

    + 49 89 991950-0info@genua.deContact us
    • Working at genua

      Start Your Career with the Leading IT Security Specialist

    • Vacancies

      Our current vacancies at all locations

    • Speculative Application

      Send us your application now.
We look forward to hearing from you.

    Two genua employees engrossed in a cheerful conversation

    Start Your Career now at the Leading IT Security Specialist genua

     Career site

  • About Us
    About Us

    Contact

    + 49 89 991950-0info@genua.deContact us
    • Facts & Figures

      Milestones in genua's Success Story: a Look at the Figures

    • News

      The Latest News on Products and Company Updates

    • Trade Fairs & Events

      Meet us and Our Experts at the Most Important IT Security Events

    • Press & Media

      Press Releases and Media Downloads

    • Trainee Firm genufix

      Fast & Free Help for Charitable and Social Organisations in and Around Kirchheim near Munich

    • genukids

      In-house Childcare for Employees and Residents of Kirchheim

  • DE
  • Solutions
    • Firewalls & Gateways
      • High Resistance Firewall genugate
      • High Resistance Firewall genugate Virtual
      • Firewall & VPN-Appliance genuscreen
      • Industrial Firewall genuwall
    • VPN
      • Firewall & VPN Appliance genuscreen
      • High-Speed VPN Appliance genuline
      • Adva FSP 150-XG118Pro
      • Highly Secure Certificate Solution genutrust
    • Remote Maintenance
      • Remote Service Solution genubox
    • Mobile Working
      • Comprehensive Security Solution genusecure Suite
      • VPN Software Client genuconnect
      • VPN Software Client genuconnect Enterprise
      • Zero Trust Application Access genusphere
      • ECOS SecureBootStick SX
    • Diodes
      • Data Diode cyber-diode
      • Data Diode vs-diode
    • Internal Network Security
      • IDS & IPS cognitix Threat Defender
    • Central Management Station genucenter
      • Central Management Station genucenter
  • Fields of Use
    • Public Sector
    • Critical Infrastructure
    • Defense
    • Classified Industry
    • IT Security for Mechanical and Plant Engineering
  • Service & Support
    • IT Security Services
    • Trainings
    • Hacking Bootcamp
  • Topics & Trends
    • Topics
      • Security by Design
      • Zero Trust
      • AI Security
    • Knowledge Base
    • Research Projects
  • Partners
    • Sales Partner
    • Partnerlocator
  • Career
    • Working at genua
    • Vacancies
    • Speculative Application
  • About Us
    • Facts & Figures
    • News
    • Trade Fairs & Events
    • Press & Media
    • Trainee Firm genufix
    • genukids
  • Contact
  • Customer Portal
  • Partner Portal
Displaying results 1 to 16 of 210.
Results per page:
pages 93
press 48
knowledgebase 37
news 16
product 16

High-speed VPN Gateway genuline with FPGA Technology

High-Speed VPN Appliance genuline Approved genuline: Secure High-Speed Transfer of Large Quantities of Data with FPGA Technology Field-programmable gate arrays (FPGA) allow for exceptionally fast signal processing. Benefiting from this advantage is the VPN gateway from genua, which encrypts high-speed transfers of large quantities of data and offers especially strong protection. genuline is based on solutions from genua that are used in the public sector and by companies with an obligation to maintain secrecy. It is approved for classification levels German VS-NfD, NATO RESTRICTED, and RESTREINT UE/EU RESTRICTED. Thanks to cutting-edge technology, you can connect multiple locations in a high-performance manner. The VPN solution can easily be integrated in existing ecosystems; technical advice and customer service are provided directly by the manufacturer. Request advice Top Highlights Secure high-speed transfer of large quantities of data High data throughput with very low latency independent of the packet mix Simple and fast integration in existing environments Your Benefits at a Glance Bandwidth up to 100 Gbit/s, latency under 50 microseconds Up to 2048 simultaneous connections in each direction Future-proof VPN including quantum-resistant key exchange for IPsec/IKEv2 is approved for classification levels German VS- NfD , NATO RESTRICTED, and RESTREINT UE/EU RESTRICTED VPN technology "Made in Germany" Simple and fast integration in existing environments Customer support and service directly from the manufacturer Highlights High-Speed VPN Appliance genuline Hardware variants Information material Request 01 Fast Transfer of Large Quantities of Data 02 Approved VPN Solution 03 High Data Throughput fast transfer of large quantities of data Increased Performance Thanks to Modern FPGA Technology For the processing of large quantities of data, it has been possible up to now to use VPN systems in clusters, which bundle the performance of multiple appliances. genuline was developed for the fast transfer of large quantities of data with one system. Thanks to modern FPGA technology and high-performance hardware design, it is possible, for example, to interconnect multiple data centers or locations with up to 100 Gbit per second with constantly low latency. The IPsec standard ensures compliant encryption on layer 3 here. Encrypted frames remain routable thanks to encapsulation in IP and IPsec ESP headers. Approved VPN Solution Strong Protection for Your Data As a German manufacturer of IT security solutions, genua offers an extensive range of products with BSI approval, including VPN systems and various clients. genuline is also approved for the processing of classified information and can be used in authorities and in organizations with an obligation to maintain secrecy in order to meet the requirement for extremely fast, highly secure data processing. Solutions from genua feature quantum computer-resistant software signatures and are, thus, already effective against future IT security risks today. Please contact us for more information. High-speed interconnection of data centers with genuline High Data Throughput Location Connection with VPN Concentrator genuline can be used to create virtual private networks (VPNs) for the secure transfer of data via public networks. Your data thereby traverses the Internet over encrypted connections known as VPN tunnels. genuline enables a high data throughput independent of the packet mix yet with very low latency. This advantage is mainly seen in demanding applications such as securing VoIP or video conferences. VPN concentrator: High-speed location connection with 100 Gbit per second and low latency Our sales team will be glad to answer your questions. We are looking forward to get in touch with you. Contact Us

genugate Virtual: The first virtualized firewall with approval for the classification level German VS-NfD

High Resistance Firewall genugate Virtual Certified Approved Virtualized Firewall with Approval for Classification Level German VS-NfD as Secure Interface to the Internet The threat posed by networks is constantly increasing and affects all organizations that operate networked IT infrastructures. The interface between the Internet and the local network is therefore crucial for the level of IT security. The more carefully traffic is controlled here, the more protection can be achieved throughout the entire network. The High Resistance Firewall genugate Virtual combines the rigorous security standards of genugate with the benefits of virtualization. It maintains a consistent security posture by offering advanced application-level-gateway (ALG) functionality for thorough network traffic inspection and control, distinguishing itself in virtual environments with its proven security and reliability. Request advice Top Highlights The only virtual Application Level Gateway with BSI approval for German VS-NfD The only virtual Application Level Gateway certified according to Common Criteria (CC) Flexible scalability for quick and efficient adaptation to growing network environments Analyzes and controls all traffic with first-class security features Your Benefits at a Glance Approved for the protection of classified networks Certified according to Common Criteria (CC) EAL4+ with AVA_VAN.5 (Advanced Methodical Vulnerability Analysis) Application level gateway: Holistic, complete content analysis – not just a sample Proxy services for a wide range of protocols (WWW, SMTP, SOAP, SSH, IMAP, etc.) GEO-IP filtering enables country-based network access control Integrated Web Application Firewall (WAF) reliably protects against attacks on web applications IPv4 and IPv6 support for migration and dual-protocol use Integrated Web Application Firewall (WAF) reliably protects against attacks on web applications High availability and increased bandwidth through clusters Logging of all network activity and SIEM integration REST-API support for administrator's task automation Automated installations and configurations – ideal for larger rollouts and the operation of multiple systems Automated updates and policy management Highlights High Resistance Firewall genugate Virtual Information Material Request 01 Application Level Gateway 02 High Availability & Load Distribution 03 Scalable Network Security Application Level Gateway Comprehensive Content Analysis for a High Level of Security The core of genugate Virtual is the application level gateway, which prevents a direct connection between different networks and analyzes and controls all data traffic with first-class security features. Encrypted data streams are decrypted using TLS inspection and subjected to a comprehensive content analysis. To detect suspicious behavior, each data packet is analyzed in its context. Depending on the configuration, genugate Virtual blocks unwanted and dangerous content. The data is then encrypted and forwarded. High Availability & Load Distribution Developed for the Cloud and Virtualization Environments genugate Virtual can be used flexibly in cloud and virtualization environments. The firewall provides comprehensive protection for various use cases, such as secure access to cloud services, securing data transfers and preventing unauthorized access. Flexible scalability allows organizations to adapt their security requirements quickly and efficiently in growing network environments. The ability to operate multiple instances ensures high availability and load distribution, which is particularly beneficial for critical applications in the cloud. Scalable Network Security Key Benefits of Virtualization Scalability: Scale your security with genugate Virtual’s adaptable design, easily matching your network’s evolving needs. Rapid Deployment: Deploy genugate Virtual quickly within your existing infrastructure, bypassing the complexities of physical setups. Reduced Physical Footprint: Switch to genugate Virtual for less reliance on physical hardware, saving space and reducing power and costs. Strong Security: Maintain high security standards with genugate Virtual’s powerful application level gateway, ensuring thorough network traffic control. Streamlined Integration: Easily integrate and manage genugate Virtual within your existing virtual infrastructure using familiar tools. genugate Virtual offers scalable network security for sensitive infrastructures Our sales team will be glad to answer your questions. We are looking forward to get in touch with you. Contact Us

cognitix Threat Defender: Intrusion Detection and Prevention System

IDS & IPS cognitix Threat Defender High-Performance Attack Detection for Reliable Protection of IT and OT Networks cognitix Threat Defender provides visibility of all network traffic and supports network security by detecting anomalies, identifying attacks, and providing comprehensive protection against threats. As an intrusion detection system (IDS), cognitix Threat Defender recognizes attempted attacks and enables targeted countermeasures. Using deep packet inspection, it identifies and inspects data packets and uses micro-segmentation to prevent the spread of external and internal attacks. With regard to response and recovery, cognitix Threat Defender reacts to anomalies as an intrusion prevention system (IPS) and also provides valuable network information for forensic analyses. Request advice Top Highlights Signature-based real-time anomaly detection (IDS) for IT and OT networks Lightning-fast automated incident response through behavior-based dynamic event engine (IPS) Maximum asset protection through reaction-free, non-invasive detection using passive traffic mirroring On-premises operation and configurable patterns, policies, and modules accessible at any time for sovereign data management Your Benefits at a Glance Intrusion detection and filtering at network level (Layer 2) and application level (Layer 7) Market-leading real-time traffic database with more than 3,700 applications/apps and protocols Efficient threat detection based on signatures, rules, and behavioral analysis via baselining Sophisticated threat detection engine examines network traffic by correlating it with up to tens of thousands of threat indicators Interface for flexible integration of additional federal and private sector MISP databases with signatures and threat indicators High information value through clear graphical presentation, logging, and drill-down reporting Local and cross-site monitoring and reporting options through easy connection of third-party software Interfaces for flexible integration into the Security Operation Center (SOC) and connection to alerting, SIEM, and monitoring tools such as Splunk or Elastic Support for organizational reviews and audits such as ISO, ISMS, and IEC Protection of privacy and fundamental rights through legally secure, GDPR-compliant application The solution and application concept allow customer-specific operation and thus ensure the user 100% data sovereignty genua promotes digital sovereignty through backdoor-free development "Made in Germany" Highlights IDS & IPS cognitix Threat Defender 01 Comprehensive Protection 02 Attack Detection & Defense 03 Dynamic Policies 04 Comprehensive Monitoring Comprehensive Protection Maximum Availability and Security for Your Assets With cognitix Threat Defender you increase the security and availability of assets in IT and OT networks within an intrusion detection ecosystem. As an intrusion detection system (IDS), cognitix Threat Defender correlates network traffic with thousands of attack patterns for accurate anomaly detection. In addition, it can optionally be used as an intrusion prevention system (IPS) to protect your assets in the network at all times without manual intervention and to prevent damage. As a firewall on network level (layer 2) and application level (layer 7), cognitix Threat Defender also enables micro-segmentation of the network structure down to the application level. Attack Detection & Defense Correlation of Network Traffic with up to Tens of Thousands of Threat Indicators IT teams need to stay up-to-date on the current threat situation in order to be able to optimally protect their infrastructure. cognitix Threat Defender offers an extensive Indicators of Compromise (IoC) database and a Suricata-compatible IDS engine with a predefined and flexibly expandable rule set. Database and IPS rule set are continuously updated. Its threat detection engine continuously compares network traffic against threat indicators and IPS rules. This can be done for the purpose of network monitoring (IDS), but also, for example, to automatically block suspicious traffic (IPS). Attack detection and defense with cognitix Threat Defender as IDS/IPS Anomaly Detection Attack Detection for Authorities, Critical Infrastructures, and Companies With cognitix Threat Defender, organizations can significantly improve their IT security situation through visibility, situational awareness, and smart control options. Use Case "Monitor" Use Case "Sensor" Use Case "Sensor in OT Networks" Use Case "Firewall" Use Case "Monitor" > Anomaly Detection: cognitix Threat Defender as Monitor For anomaly detection, cognitix Threat Defender enables comprehensive monitoring for multiple networks, network segments or WAN routes. Anomalies are logged in real time and made visible via detailed graphical representations. For this purpose, the data traffic is collected at a concentrator and evaluated by cognitix Threat Defender using signatures and advanced analysis protocols. The encryption of the data recorded at the switches and transferred to the concentrator in front of the monitoring instance is highly secure and, if necessary, using solutions with classification level "German VS-NfD" approval. Due to separate reaction strategies, cognitix Threat Defender does not actively intervene in this scenario. The solution enables data forensics through a copy of data traffic. Network monitoring with cognitix Threat Defender Use Case "Sensor" > Anomaly Detection: cognitix Threat Defender as Sensor according to the German "IT-Grundschutz Manual" cognitix Threat Defender can gradually increase the security in a network of an authority, a critical infrastructure organization or a company that is structured according to the German "IT-Grundschutz Manual". As the basis for internal network protection, cognitix Threat Defender is placed at the firewall at the zone transition to the internal network. There it analyzes the data traffic in depth for anomalies. For additional transparency and security, cognitix Threat Defender can also be placed in vulnerable areas – in this use case in DMZ A and in the network segments A and C. If the Internet front end, the servers or the clients have been successfully attacked, this can be detected with cognitix Threat Defender. The affected area can be isolated in real time to prevent lateral movement attacks. Depending on the reaction strategy, the defensive task can be initiated by an alert (IDS) or an active intervention (IPS) by the particular instance of cognitix Threat Defender. cognitix Threat Defender as sensor according to the German "IT-Grundschutz Manual" Use Case "Sensor in OT Networks" > Anomaly Detection: cognitix Threat Defender as Sensor in OT Networks With the introduction of the Industrial Internet of Things (IIoT), it is becoming increasingly important to detect anomalies in production networks such as malware or unauthorized activities. For this purpose, this application scenario provides sensors on the mirror port of the switches with regard to metadata traffic for the next higher network level. At the management level, the sensor data recorded by the cognitix Threat Defender instances is processed and evaluated by a Security Information and Event Management (SIEM). Due to special security precautions, e.g. with industrial firewalls that isolate certain network segments, no active intervention by cognitix Threat Defender as an intrusion prevention system (IPS) is used in this scenario. Network sensors on various levels Use Case "Firewall" > Network Segmentation on Layer 2 and 7: cognitix Threat Defender as Firewall As a firewall on network level (Layer 2) and application level (Layer 7), cognitix Threat Defender allows micro-segmentation of the network structure. Deep packet inspection (DPI) enables the identification and verification of protocols. Based on anomaly detection using signatures and advanced analysis protocols, the application scenario offers the possibility of actively intervening in data traffic using a set of rules (policy) and automatically blocking unauthorized activities. This means that assets in the network can be protected and damage prevented at all times without manual intervention. cognitix Threat Defender as firewall Dynamic Policies Dynamic Network Segmentation Using event-triggered dynamic policies, cognitix Threat Defender groups network participants into dynamic network objects based on their behavior. It reacts automatically to changed or undesired behavior and can deny conspicuous network participants access to certain resources if anomalies are detected – without manual intervention. New: cognitix Threat Defender for Intelligent Network Protection Contact Us for a Trial Period Request a trial of cognitix Threat Defender to comprehensively evaluate features such as attack detection, automated response to anomalies, or micro-segmentation within your IT and OT infrastructure. We offer consulting, product instruction, service, and support for the implementation according to your individual requirements. Contact us! Request a trial Comprehensive Monitoring Comprehensive Monitoring with Drill Down Reporting Extensive monitoring and reporting options ensure transparency locally and across locations. Network information can be aggregated and analyzed in cognitix Threat Defender's modern system GUI. In addition, evaluation via connected alerting, SIEM, and monitoring applications is possible. Our sales team will be glad to answer your questions. We are looking forward to get in touch with you. Contact Us

cognitix Threat Defender: Intrusion Detection and Prevention System

IDS & IPS cognitix Threat Defender High-Performance Attack Detection for Reliable Protection of IT and OT Networks cognitix Threat Defender provides visibility of all network traffic and supports network security by identifying attacks, detecting anomalies, and thus providing comprehensive protection against threats. As an intrusion detection system (IDS), cognitix Threat Defender recognizes attempted attacks and enables targeted countermeasures. Using deep packet inspection, it identifies and inspects data packets and uses micro-segmentation to prevent the spread of external and internal attacks. With regard to response and recovery, cognitix Threat Defender reacts to anomalies as an intrusion prevention system (IPS) and also provides valuable network information for forensic analyses. Request advice Top Highlights Signature-based real-time attack detection (IDS) for IT and OT networks Lightning-fast automated incident response through dynamic event engine (IPS) On-premises operation as well as individually extensible patterns, policies, and modules for complete control and sovereign data storage genua is certified according to IEC 62443-4-1, the leading standard for security in industrial automation Your Benefits at a Glance Intrusion detection and filtering at network level (Layer 2) and application level (Layer 7) Market-leading real-time traffic database with more than 3,700 applications/apps and protocols Efficient threat detection based on signatures, rules, and behavioral analysis via baselining Sophisticated threat detection engine examines network traffic by correlating it with tens of thousands of threat indicators High information value through clear graphical presentation, logging, and drill-down reporting Local and cross-site monitoring and reporting options through easy connection of third-party software Interfaces for flexible integration into the Security Operation Center (SOC) and connection to alerting, SIEM, and monitoring tools such as Splunk or Elastic Support for organizational reviews and audits such as ISO, ISMS, and IEC Protection of privacy through legally secure, GDPR-compliant application The solution and application concept allow customer-specific operation and thus ensure the user 100% data sovereignty genua promotes digital sovereignty through backdoor-free development "Made in Germany" Highlights IDS & IPS cognitix Threat Defender Hardware variants Information material Request 01 Comprehensive Protection 02 Attack Detection & Defense 03 Comprehensive Monitoring 04 Protokolldatensensor Comprehensive Protection Maximum Availability and Security for Your Assets With cognitix Threat Defender you increase the security and availability of assets in IT and OT networks within an intrusion detection ecosystem. As an intrusion detection system (IDS), cognitix Threat Defender correlates network traffic with thousands of attack patterns for accurate attack detection. In addition, it can optionally be used as an intrusion prevention system (IPS) to protect your assets in the network at all times without manual intervention and to prevent damage. Attack Detection & Defense Correlation of Network Traffic with Tens of Thousands of Threat Indicators IT teams need to stay up-to-date on the current threat situation in order to be able to optimally protect their infrastructure. cognitix Threat Defender offers an extensive Indicators of Compromise (IoC) database and a Suricata-compatible IDS engine with a predefined and flexibly expandable rule set. Database and IPS rule set are continuously updated. Its threat detection engine continuously compares network traffic against threat indicators and IPS rules. This can be done for the purpose of network monitoring (IDS), but also, for example, to automatically block suspicious traffic (IPS). Attack detection and defense with cognitix Threat Defender as IDS/IPS Use Cases Attack Detection for Authorities, Critical Infrastructures, and Companies With cognitix Threat Defender, organizations can significantly improve their IT security situation through visibility, situational awareness, and smart control options. Use Case "Sensor" Use Case "Sensor in OT Networks" Use Case "Sensor" > Attack Detection: cognitix Threat Defender as Sensor according to the German "IT-Grundschutz Manual" cognitix Threat Defender can gradually increase the security in a network of an authority, a critical infrastructure organization or a company that is structured according to the German "IT-Grundschutz Manual". As the basis for internal network protection, cognitix Threat Defender is placed at the firewall at the zone transition to the internal network. There it analyzes the data traffic in depth for anomalies. For additional transparency and security, cognitix Threat Defender can also be placed in vulnerable areas – in this use case in DMZ A and in the network segments A and C. If the Internet front end, the servers or the clients have been successfully attacked, this can be detected with cognitix Threat Defender. The affected area can be isolated in real time to prevent lateral movement attacks. Depending on the reaction strategy, the defensive task can be initiated by an alert (IDS) or an active intervention (IPS) by the particular instance of cognitix Threat Defender. cognitix Threat Defender as sensor according to the German "IT-Grundschutz Manual" Use Case "Sensor in OT Networks" > Attack Detection: cognitix Threat Defender as Sensor in OT Networks With the introduction of the Industrial Internet of Things (IIoT), it is becoming increasingly important to detect anomalies in production networks such as malware or unauthorized activities. For this purpose, this application scenario provides sensors on the mirror port of the switches with regard to metadata traffic for the next higher network level. At the management level, the sensor data recorded by the cognitix Threat Defender instances is processed and evaluated by a Security Information and Event Management (SIEM). Due to special security precautions, e.g. with industrial firewalls that isolate certain network segments, no active intervention by cognitix Threat Defender as an intrusion prevention system (IPS) is used in this scenario. Network sensors on various levels Contact Us for a Trial Period Request a trial of cognitix Threat Defender to comprehensively evaluate features such as attack detection, automated response to anomalies, or micro-segmentation within your IT and OT infrastructure. We offer consulting, product instruction, service, and support for the implementation according to your individual requirements. Contact us! Request a trial Comprehensive Monitoring Comprehensive Monitoring: Detailed Evaluations and Seamless Integration All network data is consolidated and visualized in a central overview with a modern user interface. Forensic investigations and rapid root cause identification are supported by in-depth analytics. Drill-down reporting allows individual events to be traced down to the packet level. cognitix Threat Defender enables flexible data sharing: The collected information can be transmitted directly to existing alerting, SIEM, and monitoring solutions (e.g. Splunk, Elastic) via standardized interfaces. Monitoring works both locally and across multiple locations, ensuring you maintain a complete overview of your entire network at all times. New: cognitix Threat Defender Protokolldatensensor Capturing all communication relationships between network components and forwarding them to a SIEM enable real-time threat analysis. If data from different local networks is correlated in a SIEM for central security monitoring, the data collection in the networks should be carried out using a sensor that is as non-reactive and lightweight as possible, operates transparently, and can be flexibly integrated. The cognitix Threat Defender Protokolldatensensor meets this requirement. It captures metadata from all network data streams and provides it in an optimized format, such as Elastic, for direct import into a SIEM. Product Flyer Facts & Features Use of cognitix Threat Defender Protokolldatensensor for central monitoring of local networks Our sales team will be glad to answer your questions. We are looking forward to get in touch with you. Contact Us

genusphere: Zero Trust made in Germany

Zero Trust Application Access genusphere genusphere: Zero Trust Made in Germany With Zero-Trust concepts, organizations create a secure framework for modern work organization. The cyber risks arising from remote work are avoided through dynamically controlled access to applications. The rules based on user management are the key to a security architecture that allows maximum flexibility. The Zero-Trust Application Access Solution genusphere enables internal and external users browser-based access only to the applications approved for them. In addition, genusphere ensures secure communication by encrypting all data traffic and also protects against lateral movement of attackers within the network. Request advice Top Highlights Implementation of Zero-Trust concepts Easy to use via browser only without VPN client Flexible scalability with Kubernetes platform Your Benefits at a Glance Micro-perimeter security through application-specific access protection Secure communication through encryption of all data traffic Complete traceability through audit-proof logging Protection against lateral movement of attackers in the network Secure access via browser, no VPN clients required Digital sovereignty through hosting and operation by the user Standardized interface to IT infrastructure monitoring solutions such as Prometheus, Grafana and Checkmk Easy integration into IT and security infrastructure through support of existing identity providers Microsoft Entra ID (formally Azure AD) and Keycloak Highlights Zero Trust Application Access genusphere Information material Request 01 Fine-grained Authorization Management 02 High Flexibility 03 Modern Security Concept 04 Use Cases Fine-grained Authorization Management Complete Control over Application Security The modern working world requires effective network security. This includes aspects such as the use of cloud services and dynamically acting remote users who are only allowed to access applications to a limited extent. All users must be granted exactly the authorization that corresponds to their role and risk profile. To protect sensitive applications, genusphere relies on a fine-grained authorization management. The integration of Microsoft Entra ID (formerly Azure AD) and Keycloak is supported as central user management for precise, graduated control over access conditions. High Flexibility Zero-Trust Solution with High Flexibility to Protect Digital Sovereignty genusphere can be operated flexibly in an existing security architecture. Organizational requirements can be easily enforced and adapted using policies. Resources not expressly permitted are always reliably protected against unauthorized access. In addition, genusphere is flexibly scalable thanks to support for the Kubernetes platform. The solution and deployment concept ensures the operator 100 percent data sovereignty. As a German manufacturer, genua promotes digital sovereignty through development made in Germany. modern security concept Why Zero Trust? Zero Trust is a modern security concept that is becoming increasingly important in today's digital landscape. By implementing Zero Trust Application Access (ZTAA), organizations can significantly improve their security posture and better protect themselves against ever-evolving cyber threats. The benefits of Zero Trust include: Continuous verification: Zero Trust assumes that no user or device is trusted by default. Instead, every access is methodically and repeatedly verified, even if the user is already known to the system. Fine-grained access controls: The principle of least privilege is enforced, allowing users to access only the resources they need to do their work. Support for remote work: Zero Trust is ideal for securing remote access because it works regardless of the location of the user or the device. Protection against internal threats: Because Zero Trust does not differentiate between internal and external users, it provides better protection against insider threats and compromised accounts. Reducing the attack surface: By eliminating implicit trust and constantly verifying, the potential attack surface is significantly reduced. genusphere offers a fine-grained authorization management for secure remote access to internal applications Use Cases genusphere stands for security and flexibility in numerous fields of application. The solution offers cost savings during rollout as well as low maintenance costs, cross-platform support, and easy integration of a client-less solution into modern, scalable work environments. Here you find typical use cases: Hybrid Workforces Zero-Trust Application Access for Temporary Employees Zero-Trust Application Access for Partners Hybrid Workforces > Hybrid Workforces Your organization consists of a hybrid workforce, with employees working in varying proportions both on-site in the office and remotely from any other location. Requirement: Hybrid workforces need secure and trustworthy access to corporate data and applications regardless of where they work. Solution with genusphere: Strict authentication process Access controls based on roles Continuous monitoring of dial-in parameters Secure communication and data transfer Zero-Trust Application Access for Temporary Employees > Application Access for Temporary Employees You want to give temporary employees in your organization, for example those on interim employment contracts, selective access to certain data and applications such as Outlook Web Access, ERP systems or databases. Requirement: Temporary employee access needs seamless granting or revocation of access rights when users change roles. Solution with genusphere: Access control based on roles Reliable protection of unapproved applications and sensitive data Zero-Trust Application Access for Partners > Application Access for Partners For joint projects, you want to give external service providers and suppliers access to certain data and applications such as Confluence, MS Office 365, and MS Dynamics. Requirement: Partner access requires secure support for contractors and other third parties using devices not managed by the internal IT department. Solution with genusphere: Secure access via browser, no VPN client required Continuous monitoring of dial-in parameters Access control based on roles Reliable protection of unapproved applications and sensitive data Our sales team will be glad to answer your questions. We are looking forward to get in touch with you. Contact Us

genusecure Suite: Security Solution for VS-NfD Compliant Workplaces

Comprehensive Security Solution genusecure Suite genusecure Suite: The Comprehensive Security Solution for Classification Level German VS-NfD Compliant Workplaces With genusecure Suite, working remotely in compliance with the classification level German VS-NfD is easy to implement – with 100 % usability and flexibility. This enables the public sector and companies to create an ideal workplace anywhere and anytime, where state-of-the-art technologies simplify and secure workflows and minimize the risk of data loss on all end devices. genusecure Suite meets all BSI requirements for secure teleworking while providing the performance of advanced IT tools for effortless collaboration. New-Work-compliant workplaces that meet the classification level German VS-NfD can thus be easily established as needed, and the users benefit directly from proven and powerful solutions for classification level German VS-NfD. Request advice Top Highlights All-in-one security for organizations with VS-NfD requirements Simple and needs-based provision of secure, New-Work-compliant workplaces Full integration with Microsoft Windows Your Benefits at a Glance All-in-one security: genusecure Suite is designed for any organization that requires classification level German VS-NfD, and it safeguards connections, applications, and data of mobile devices running Windows 11 Simple and convenient: The users work via the familiar Windows interface without any additional layers Future-proof and mobile: The completely software-based suite offers all-round security for New-Work concepts Reliable and approved by the BSI: The VPN Software Client genuconnect and the hard drive encryption Utimaco DiskEncrypt meet the highest security requirements and are approved by the BSI Seamless integration into public key infrastructures (PKI) through a fully PKI-compatible platform Highlights Comprehensive Security Solution genusecure Suite Information material Request 01 Highly Secure Workplace 02 High Security Components 03 High Security Components Highly secure workplace genusecure Suite Combines Proven, Integrated Solutions for Classification Level German VS-NfD The individual components of genusecure Suite work together seamlessly, even with updates and adjustments. They are managed centrally and can be configured individually. After personalizing the end device via a smart card, the workplaces and tools are ready for use – and they offer the decisive technological prerequisites for an innovative and highly secure working environment. Automatic and highly secure, BSI-approved connectivity for all remote users via the VPN Software Client genuconnect from genua GmbH The IT security solution enables highly secure connections to the network of organizations, which ensures secure remote working. Top level hard drive encryption approved by the BSI with Utimaco DiskEncrypt The hard drive encryption was specially designed and developed for German government customers and industries with an obligation to maintain secrecy in accordance with the requirements of the BSI. Secure multi-factor authentication and digital signatures with smart card middleware Nexus Personal Desktop Client Nexus Personal Desktop Client is a smart card middleware that makes secure multi-factor authentication and digital signatures simple and straightforward. The solution integrates smart cards, security tokens, and features such as e-mail encryption. Complete VPN Ecosystem for Maximum Security The Firewall & VPN Appliance genuscreen complements genusecure Suite to create a complete VPN ecosystem “Made in Germany”: This gives companies and government organizations the opportunity to flexibly set up secure remote workplaces according to their individual requirements. DOWNLOAD PDF High Security Components genusecure Suite offers High Security Components Automatic and highly secure, BSI-approved connectivity for all remote users via the VPN Software Client genuconnect from genua GmbH Top level hard drive encryption approved by the BSI with Utimaco DiskEncrypt Secure multi-factor authentication and digital signatures with smart card middleware Nexus Personal Desktop Client VPN Software Client genuconnect Utimaco DiskEncrypt Nexus Personal Desktop Client VPN Software Client genuconnect > VPN Software Client genuconnect Technology Benefits for genusecure Suite Fully integrated with hard drive encryption and smart card middleware Hard drive encryption and VPN Software Client are approved for classification levels German VS-NfD, NATO RESTRICTED, and RESTREINT UE/ EU RESTRICTED Maximum protection is ensured through the use of proven IPsec technology and BSI-compliant crypto algorithms in combination with a smart card Use of common smart cards (from CardOS 5.x, optimally 5.3) genuconnect can easily be scaled for infrastructures with more than 100,000 VPN clients Flexibility and Future-Proof for Users and Companies It automatically establishes a highly secure VPN connection for all users Impressive user-friendliness Seamless workflow with powerful security features Mobile devices are secured against unauthorized access Scalable with expanding infrastructures Compatible with the Microsoft ecosystem: The VPN Software Client is managed with the existing Windows tools for quick installation, configuration, updates, and uninstallation Utimaco DiskEncrypt > Utimaco DiskEncrypt Technology Benefits for genusecure Suite Pre-boot authentication via smart card offers effective protection against unauthorized data access if a laptop is stolen or lost Secure entropy generation using a random number generator approved by the BSI and HSM – Utimaco CryptoServer CP5 for classification level German VS-NfD (optional) or smart card integration Support for Microsoft upgrade feature allows upgrading Windows 10 SAC to a subsequent version while keeping the encrypted partitions/ hard drives Flexibility and Future-Proof for Users and Companies Sector-based, hard drive encryption with reliable data security without sacrificing performance DiskEncrypt clients are configured completely offline Approved for information with classification levels German VS-NfD, EU RESTRICTED, and NATO RESTRICTED User-transparent partition encryption with reliable encryption algorithm Effective protection against bypassing the Windows password Very user-friendly with familiar Windows OS logon process after pre-boot authentication Nexus Personal Desktop Client > Nexus Personal Desktop Client Technology Benefits for genusecure Suite Can be integrated with third-party applications using standardized APIs, such as Microsoft Cryptographic Application Programming Interface (CAPI) on Windows and PKCS#11 on all different platforms Browser TLS client certificate authentication Browser signing and authentication using Personal Desktop plug-out technology Flexibility and Future-Proof for Users and Companies Authentication and signing in web applications, cloud services, and desktop smart card environments Straightforward Windows login Authentication/signature in standard applications such as browsers, e-mail clients, and Windows login process E-mail encryption Convenient user interface for viewing and managing token properties and certificates Our sales team will be glad to answer your questions. We are looking forward to get in touch with you. Contact Us

Work in Compliance with the ECOS SecureBootStick SX

ECOS SecureBootStick SX Approved Work in Compliance with the Classification Level German VS-NfD with the ECOS SecureBootStick SX Many employees today access their employer's IT systems while working from home or at a mobile workplace. For cybercrime and espionage, this opens attractive windows of opportunity. Offering protection here are IT-security technologies that can be integrated quickly and easily and which meet the highest standards of data security, even across network boundaries. As part of the mobile portfolio for working in compliance with the classification level German VS-NfD, genua and ECOS offer a solution that is precisely tailored to this need. It combines the Firewall & VPN Appliance genuscreen with the ECOS SecureBootStick SX. Connected to any PC or Mac, the Boot Stick ensures that employees of public authorities and companies can access classified information from home or the field. This provides maximum security and can be quickly and easily integrated by users and IT administrators. Moreover, the acquisition costs and a small fee for support are easy on the IT budget. Request advice Top Highlights Secure connection to terminal server, Citrix, VMware with multi-factor authentication Drivers for all common 64-bit-based Intel/AMD PCs, x86-based tablets and all common Macs Approval for VS-NfD with connection to genuscreen via IPsec VPN technology "Made in Germany" for secure data access Your Benefits at a Glance Complete solution from a singe source for secure mobile work via remote access No unauthorized access thanks to multi-factor authentication (MFA) by means of smart card Highly secure access into the company network via the genuscreen VPN gateway with BSI approval for the classification level German VS-NfD Secure VPN connection not established until after successful authentication Firmware and applications on write-protected partition Integrated firewall blocks attacks such as TCP/IP and ping requests Data safe for storing documents Test routines to protect against booting in a virtual machine or manipulated updates Can be used as a VS-NfD client for remote maintenance in sensitive networks Simple integration in the solution portfolio from genua Highlights ECOS SecureBootStick SX Information material Request 01 Very High Level of Security 02 Seamless Protective Shield 03 Efficient Administration 04 Remote Access in Classified Networks very high level of security IT Security for Public Authorities and Companies As part of the mobile solution portfolio from genua, the ECOS SecureBootStick SX provides a very high level of security that is especially valuable in a wide range of use cases. These include, in particular, working from home, the (temporary) engagement of external service providers, emergency workplaces, crisis management and remote maintenance. seamless protective shield Multiple Protective Systems on just One Stick The ECOS SecureBootStick SX combines selected security solutions to form a seamless protective shield against attacks and threats: Its specially hardened operating system provides highly secure access to terminal-server and VDI infrastructures or web applications. The laptop or workstation is booted from within an encapsulated Linux environment; in addition, complete separation between business and private use of the given computer is ensured. An operating system installed locally on the used computer or as yet unknown malicious software is not activated. In addition, the stick stores absolutely no data on the computer. Efficient Administration Central Management for Simple Integration At the forefront of the development of the complete solution was simple and flexible handling both by those responsible for IT as well as by the users. With the ECOS SystemManagementAppliance and the Central Management Station genucenter from genua, all components of the solution can be administered centrally. Moreover, additional solution components such as genuconnect can be managed and controlled. With ECOS Easy Enrollment, it is also possible to scale the number of access points to a high number within just a very short time. Personal activation codes or smart cards are generated centrally; drivers for all commercially available PCs and x86-based tablets ensure maximum compatibility. Learn more about the mobile solutions for restricted data from genua here: explore mobile solutions for restricted data Integration of ECOS SecureBootStick SX and genuscreen VPN gateway in the IT infrastructure Case Study Remote Access in Classified Networks Because of its services for the German Armed Forces, the MTG Marinetechnik GmbH has special IT security requirements. For remote access to data and applications, only systems can be used that are approved by the German Federal Office for Information Security (BSI) for the classification level German VS-NfD. With the ECOS SecureBootStick SX, the specialists for maritime procurement projects have found the right solution to enable more employees to telework at lower costs. CASE STUDY (PDF) Technically compatible, the ECOS SecureBootStick SX is a perfect addition to the genua product portfolio, both for the use of private or third-party PCs in a classified environment. Paul Marx , Management Director, ECOS Technology GmbH genua Partner ECOS Technology GmbH ECOS is a German, owner-managed company that specializes in IT security software development. With products such as ECOS Mobile Office and ECOS SecureBootStick SX, the ECOS Technology GmbH has specialized in IT solutions for secure remote access. Ecos Website A strong cooperartion: Partnership with genua genua cooperates closely with key government organizations, leading technology companies, research institutions, committees, and associations. We are convinced that the successful establishment of a sustainable and future-proof IT security ecosystem requires a partnership and multidisciplinary approach. Learn more Our sales team will be glad to answer your questions. We are looking forward to get in touch with you. Contact Us

genugate Firewall: Well Protected Against Attacks

High Resistance Firewall genugate Certified Approved genugate Firewall: Well Protected Against Attacks Your level of IT security is determined largely at the interface between the Internet and the local network. The attacks from the outside and the data sent from the inside pass through this point. The more carefully this data traffic is monitored, the greater the protection you achieve for your entire network. The IT security at this critical point should therefore be given top priority. A central element here is the content analysis: you should only allow data into your network after completely inspecting its content, because only in this way can dangerous content be reliably detected and blocked. The High Resistance Firewall genugate satisfies the highest requirements: two different firewall systems – an application level gateway (ALG) and a packet filter (PFL), each on separate hardware – are combined to form a compact solution. Request advice Top Highlights Two levels: application level gateway (ALG) and packet filter (PFL) Common Criteria (CC) certification: The only "highly resistant" firewall in the world Approval for classification levels German VS-NfD, NATO RESTRICTED, and RESTREINT UE/EU RESTRICTED Your Benefits at a Glance Approved for the protection of classified networks Certified at Common Criteria Level EAL 4+ with AVA_VAN.5 (Advanced Methodical Vulnerability Analysis) Best self-protection: The only "highly resistant" firewall in the world as classified by the BSI Two-tier firewall: Implementation of the two components on two independent computers: On the inside is a packet filter (PFL), on the outside an application level gateway (ALG) Application level gateway: Comprehensive, complete content analysis – not only just a random sample Packet filter with an individually configurable set of rules Integrated Web Application Firewall (WAF) reliably protects against attacks on web applications GEO-IP filtering enables country-based network access control Offline mode: The license can be activated offline; patches and updates can be executed manually REST-API support for administrator's task automation Advanced update mechanism protects against attacks with quantum computers Automated installations and configurations – ideal for larger rollouts and the operation of multiple systems Highlights High Resistance Firewall genugate Hardware Variants Information Material Request 01 Application Level Gateway 02 Stateful Packet Filter 03 Voice-over-IP-Kommunikation 04 Complete Solution for Maximum Security Application Level Gateway Content Control: Dangerous Content Is Blocked At the heart of the genugate solution is the application level gateway. This sophisticated security system checks the content of the entire data stream. To this end, the incoming data packets are first stopped – the application level gateway does not permit a direct connection between the Internet and the local network. The gain in security through this feature: attacks are not possible on the network level. Many risks, such as through the extended headers with IPv6, are thereby excluded. After the connection is terminated, the packets are assembled like a puzzle, since a content check is only possible using complete data sets. Filtering is now performed and, depending on the configuration, undesired and dangerous data such as active content, viruses or even spam are reliably blocked. Only then is the data passed on via a new connection. The application level gateway can also secure cloud usage by, e.g., only allowing uploads to external services if the data is encrypted. With the comprehensive traffic analysis through the application level gateway, genugate offers a significantly higher level of security than so-called next generation firewalls, which usually function with deep packet inspection or pattern matching and check only a random sample of the data contents. Firewall Certified at Common Criteria Level EAL 4+ This solution has also convinced the German Federal Office for Information Security (BSI), which certified the genugate firewall according to the international Standard Common Criteria (CC) at the strict EAL 4+ level. The high trustworthiness of the security of our firewall solution has thereby been confirmed by an independent organization. In addition, genugate is classified as highly resistant as it counters with maximum resistance against direct attacks. The security performance satisfies the requirements of level EAL 7. The genugate application gateway firewall is the only firewall in the world that offers this high level of security. Stateful Packet Filter Teamwork with Packet Filter With genugate, a stateful packet filter functions as a second firewall system on the inside in the direction of the local network. It checks the data packets based on the header information: IP address, protocol type and port number. This means: all data must pass through two firewall systems whose protective measures optimally complement one another on different levels. Through the finely coordinated teamwork, the two systems mutually protect one another. The two-tiered structure also allows for the creation of demilitarized zones (DMZ) precisely according to your requirements: Servers can be connected to both the application level gateway as well as to the packet filter via other interfaces. As a result, you are able to offer services on the Internet that are secured through the high-performance application level gateway or servers can be closely connected to your LAN via the packet filter. genugate: The Ideal Basis for a P-A-P Solution The German Federal Office for Information Security (BSI) recommends using a firewall combination comprising two packet filters and one application level gateway – or P-A-P for short – at the critical interface between Internet and local network. The upstream packet filters placed on either side of the high quality application level gateway protect against both direct attacks and high data loads. With genugate, you can comfortably achieve this high level of security: If, for example, you configure your Internet router with rules as a packet filter or additionally use a firewall of type genuscreen from genua, the desired P-A-P combination can be created in conjunction with the two-tiered genugate. Hochsichere Schnittstellen durch zweistufige Firewall genugate Voice-over-IP communication Additional SIP Module Option All-IP and further developments require a broad transition to Voice-over-IP communication, for which the Session Initiation Protocol (SIP) is of central importance. Since new technologies also result in new attack vectors, it is important to ensure completely secure operations. With the additional SIP module option, you receive a specialized testing authority that only allows data communication if the corresponding connection has been fully analyzed and assessed as secure. The SIP module can also be used for SSL/TLS connections. Through session border controller (SBC) functionality, it prevents attacks on telephones and telephone systems and enables the enforcement of security policies. The SIP module also ensures the interoperability of systems that use different encryption standards, for example, and simplifies certificate management. Complete Solution for Maximum Security Finely Tuned Firewall System With genugate, the German provider genua offers an approved and certified IT security system for critical interfaces. The High Resistance Firewall is a complete solution consisting of hardware, operating system, and firewall software. All components are precisely matched to one another and designed for maximum network security. The used operating system OpenBSD guarantees high security standards, and the two firewall components – the application level gateway and the packet filter – run on physically separate computers. Both firewalls are, however, operated via a uniform user interface which enables convenient administration and reduces support costs. genugate stands out from other firewalls through its two-tier protection and guarantees robust protection at the critical interface between your network and the Internet. Simple administration of the two-tier firewall solution via a uniform GUI for comprehensive network protection Hardware and Clusters for All Requirements We offer genugate in various hardware models to cover a wide range of requirements. Clusters handle even greater data throughput and availability requirements: All models can be freely bundled as powerful clusters. The two-tier genugate is administrated using a consistent Web GUI. If you use several firewalls of type genugate, you can comfortably create and distribute configuration information such as IP addresses or server names via a management station. You can use an interface to connect the genugate to your security information and event management system (SIEM), e.g., QRadar from IBM. The log data of the firewall system makes an important contribution to your central event and risk analysis. Web Application Firewall (WAF) based on a CC EAL4+ certification with AVA_VAN.5 genugate includes the only Web Application Firewall (WAF) on the market that is based on a foundation certified by the BSI according to Common Criteria (CC) EAL4+ with AVA_VAN.5 (Advanced Methodical Vulnerability Analysis). The designation AVA_VAN.5 stands for a high level of self-protection which has been proven to protect the firewall even against attackers with high attack potential. Especially endangered organizations such as security authorities or operators of critical infrastructures can thereby reliably protect their servers against attacks. New: genugate Virtual – the Only Virtualized Application Level Gateway with Approval for Classification Level German VS-NfD genugate Virtual is the only virtualized application level gateway approved by the German Federal Office for Information Security (BSI) for processing data classified as German VS-NfD in Germany. The High Resistance Firewall genugate Virtual combines the rigorous security standards of genugate with the benefits of virtualization. It maintains a consistent security posture by offering advanced application-level-gateway (ALG) functionality for thorough network traffic inspection and control, distinguishing itself in virtual environments with its proven security and reliability. High Resistance Firewall genugate Virtual Virtualized application level gateway for processing classified data Certified Approved Our sales team will be glad to answer your questions. We are looking forward to get in touch with you. Contact Us

Data Diode cyber-diode: High-Security Industrial Monitoring

Data Diode cyber-diode Data Diode cyber-diode: High-Security Industrial Monitoring of Plants, Machinery, and Critical Infrastructure Plants and machinery are increasingly connected to the Internet due to the compelling advantages: operational and sensor data from machines and plants is constantly available and can be centrally monitored. This allows you to, e.g., perform predictive maintenance: you can respond to small changes and carry out the necessary maintenance before damages or even breakdowns occur. In order to be able to benefit from these advantages, however, a high level of cyber security must be ensured. The data diode solution cyber-diode from genua was developed according to the Security by Design principle and enables unidirectional data transfers with highly effective protection of the monitored systems. Request advice Top Highlights Industrial software data diode with highest resilience, based on a BSI-approved product Flexible application scenarios thanks to OPC UA support Secure data transfer due to OPC UA-native encryption and FTPS Ensuring the receipt status through delivery confirmation for end-to-end connections Your Benefits at a Glance More reliable than fiber optic diodes, more convenient than air gaps and more secure than firewalls Data transmission with confirmation bit – minimalistic feedback about the delivery status of the data packets allows reliable conclusions to be drawn on the completeness of the transfer One-way function cannot be modified; security by design eliminates the possibility of incorrect configuration and backdoors Secure Boot protects against software manipulation Supports OPC UA, MODBUS TCP, FTP, FTPS, SFTP, SMTP, TCP, UDP, syslog, HTTP, and IPSec VPN Complete package of hardware and adapters (protocol converters); no hidden costs Efficient administration of numerous instances at different locations with Central Management Station genucenter Optional stand-alone online configuration Space-saving DIN-rail mounting (rack mounting with additional kit) Highlights Data Diode cyber-diode Hardware variants Information material Request 01 Protected Production 02 One-Way Data Transfer 03 Secure System Monitoring 04 OPC Unified Architecture Protected Production Protect Networked Control Systems Monitoring networked production systems significantly supports the prevention or solution of problems within production. All plants and machinery that send data over the Internet are, in principle, vulnerable as a result. This means that digitally networked systems have to be protected from infection by malicious software and other forms of unauthorized access. Subject to a particularly high protection requirement are, of course, systems that control critical infrastructure or other plants where incorrect functioning could lead to extensive damage or loss of life, e.g., power station turbines, chemical production plants and industrial robots on production lines. cyber-diode offers operators of these systems the highest level of industrial monitoring security. Industrial monitoring: Secure one-way data transfer from plants or machinery via the Internet to a central control panel or external service provider One-Way Data Transfer One-Way Data Transfer with cyber-diode The risks associated with the digital networking of highly critical control systems can be minimized with cyber-diode. This solution monitors network connections and only allows one-way data transfer – information flow in the opposite direction is completely blocked. Once protected by our data diode, plants, machinery and IT systems can send data over public networks without risking their integrity. One-way data transfers between different security zones within a production network Minimal feedback channel Absolutely Reliable Data Transfer Our cyber-diode stands apart from the diode solutions from other manufacturers in one important aspect: we can guarantee 100 % reliable data transfer. How do we achieve this? cyber-diode has a minimal feedback channel for status messages. This allows a signal to be sent back to the sender at the end of each transmission to confirm that all data has been completely and correctly received. The feedback is minimal: it consists only of a single status bit (OK/not OK) per connection. Conventional glass fiber data diodes without a physical feedback channel are unable to transport this feedback. This means that the sender never knows whether the transfer was successful or if it needs to be repeated again. With this type of data diode, one can never be sure that all data has been transfered – data loss must always be considered a possibility. Using the feedback, the cyber-diode can also always transfer data at the optimal speed: it detects the maximum transfer rate that the receiver can process. cyber-diode supports protocols TCP and UDP, e.g., for Syslog, and FTP for file transfers and SMTP for e-mail via built-in adapters. state-of-the-art technology High Security Through Low Complexity With the feedback channel, it must, of course, be ensured that only status messages flow back and not any other data. This aspect is regulated by the diode function that uses state-of-the-art technology: its programming has been kept to a minimum – it only has a few hundred lines of program code – and runs on a microkernel operating system that has also been reduced to an absolute minimum. Due to the low complexity, the central filter process is easy to analize; the code can be examined line by line to exclude errors. This compact construction of cyber-diode guarantees absolutely reliable one-way data transfer. The degree of security this solution provides can be seen with vs-diode from genua , which uses the same technology and is approved for use up to the SECRET security level by the German Federal Office for Information Security (BSI). Secure System Monitoring Security by Design Means Guaranteed Error-Free Functioning We supply cyber-diode as a complete solution that is preconfigured and easy to integrate into your network. The solution’s security by design guarantees the correct functioning of the diode – this cannot be disabled, even through incorrect administration. We will be happy to assist you with the installation – service is provided directly from the manufacturer genua. The industrial data diode cyber-diode for secure system monitoring OPC Unified Architecture Flexible Use Cases through OPC UA Support cyber-diode fully supports the OPC Unified Architecture (OPC UA), an open standard for exchanging machine data. In plants in the manufacturing and process industry, for example, this enables a secure, reliable, and manufacturer- and platform-independent communication. The advantages of cyber-diode with OPC UA are apparent in two aspects in particular. First, the standard makes every type of information available at all times and at all locations for every authorized application and every authorized person. Second, the data is now unidirectional and, thus, cannot be tampered with and transmitted across security-critical network boundaries. With OPC UA, cyber-diode further strengthens its security functions: the machine data that it collects, such as control variables, measurement values or parameters, is passed on to client applications in encrypted form. Our sales team will be glad to answer your questions. We are looking forward to get in touch with you. Contact Us

Keep a Grip on Your IT Security with genucenter

Central Management Station genucenter Keep a Grip on Your IT Security with genucenter genucenter helps you keep a grip on your IT security. The genua security solutions can be configured, administrated and continuously monitored using the standardized GUI of the central management station. Thanks to this overview, it is easy to stay on top of your IT security and make sure all systems are up-to-date and running flawlessly. You can thus also consistently implement your policies in the entire network. And, if you strengthen your IT security with new appliances, they are easily integrated in the central management station, where they are immediately set up with established configurations. Request advice Top Highlights Central role-based administration of the genua solutions Systematic implementation of IT security policies Easy administration of grouped security systems Common Criteria (CC) EAL4+ certification for the administration of grenuscreen in regulated application scenarios Your Benefits at a Glance Well-structured web interfaces Multi-client-capable solution Exact mapping of complex networks Standardized and unambiguous error messages Solution variant genucenter Virtual for operation on the following hypervisors: Hyper-V, Linux KVM, and VMware ESXi Highly secure update mechanism protects against attacks with quantum computers Support for full-mesh site-to-site VPN with IKEv2 Highlights Central Management Station genucenter Hardware variants Information material Request 01 Administration & Monitoring 02 Hierarchical Management 03 Multi-Client Capability 04 Modern Web Interfaces Administration & Monitoring Central Management Station for Your IT Security Ecosystem Using the central management station pays off: the administrative effort is reduced and the security level improves. The more complex your network, the greater your advantages. Even the administrators of small networks will definitely be relieved of numerous tasks by using central management of the security system – that, they can be sure of! These security solutions can be monitored and administered or partially administered using genucenter: Firewall & VPN Appliance genuscreen Firewall & VPN Appliance genuscreen Virtual High-Speed VPN Appliance genuline Remote Service Solution genubox Industrial Firewall genuwall Data Diode cyber-diode High Resistance Firewall genugate High Resistance Firewall genugate Virtual IDS/IPS cognitix Threat Defender Adva FSP 150-XG118Pro Hierarchical Management Conveniently Administrate the IT Security of Complex Networks An important feature of genucenter is the hierarchical management. Regardless of how complex your company is, the network structure can be precisely mapped in our management system. From the company headquarters down to the individual departments at various locations, the network structure is represented according to your organigram. Individual user rights can be defined for specific areas, e.g., which workstation may access which server. Systems can be combined to form a tree structure to easily inherit configurations – and thereby save a great deal of administrative effort. In addition, company-wide rules are defined which can, for example, be used to require that employees connect to the company headquarters using a defined VPN and then only access certain applications there. The centralized and concise management make it easy for you to strictly enforce even the most complex rules. Use case: Administration of IT security solutions in the company network via the Central Management Station genucenter Multi-Client Capability Distribute Tasks with Multi-Client Capable Solution genucenter can handle multiple clients. Thus, you can assign your administrators specific roles or areas of responsibility: one admin can handle firewalls in Germany while another takes care of the international VPN connections, etc. By means of a changelog, it is possible to determine who made what change and when they made it. This feature is also of interest to sales partners and service providers of genua products. You create all customers to whom you provide support as clients. Via a central management station you can thereby reliably manage numerous security systems located at various customers. The customers, in turn, are able to monitor all support work performed in their network via the genucenter’s revisor access. The revisor has only read permissions and is an ideal role for security representatives. To uphold the four-eyes principle, roles can also be assigned in combination; for instance, an administrator in one area can serve as an auditor in another. genucenter integrates seamlessly into modern identity ecosystems: support for OpenID Connect enables the use of common solutions such as Entra ID, Keycloak or Okta. Users gain full control over authentication and authorization directly within their central management solution. Multi-client capability allows responsibilities to be assigned to different administrators Modern Web Interfaces High Security Thanks to a Good Overview It is not possible to exclude all possible risks in advance, but you should keep an eye on them. With genucenter, all information from the managed security systems flows together and is concisely displayed on modern web interfaces: from software-, configuration-, and patch versions to the status of VPN connections and error messages. This helps you to always stay on top of your IT security and quickly react to problems. Helpful here is the fact that all security solutions from genua use a uniform and unambiguous language. This eliminates the need for the time-consuming interpretation of various error messages, thereby allowing you to immediately get started with finding the solution to the problem. genucenter: Modern user interface for a clear overview Our sales team will be glad to answer your questions. We are looking forward to get in touch with you. Contact Us

Data Diode vs-diode: High-Speed One-Way Data Transfer

Data Diode vs-diode Approved Data Diode vs-diode: High-Speed One-Way Data Transfer into SECRET Classified Networks Do you want to transfer data into networks classified as SECRET – so-called red networks – from black networks, which are not classified or classified at a lower level, e.g., e-mail, information from databases, video data, current patterns for anti-virus systems or software updates? genua has developed the Data Diode vs-diode for just this task – data transfer across black-red interfaces – with approval up to the SECRET classification level. Request advice Top Highlights Approval up to the German SECRET, SECRET UE/EU SECRET, and NATO SECRET classification levels Security by design for maximum reliability Easy operation and configuration Your Benefits at a Glance Supported protocols: Lumberjack v1, v2 and HTTP(S)-PUT for Logstash/ELK Stack, TCP, UDP, SMTP(S), SFTP, FTP(S), syslog Approved up to the classification levels German SECRET, SECRET UE/EU SECRET, and NATO SECRET Performance up to more than 8 Gbit/s Complete package of hardware and adapters (protocol converters); no hidden costs Easy operation and configuration Consulting, customer support, and service directly from the manufacturer Highlights Data Diode vs-diode Hardware variants Information material Request 01 High Performance & Reliability 02 Strict One-Way Data Transfer 03 Low Complexity 04 Support & Service High Performance & Reliability One-Way Data Transfer to Red Networks The Data Diode vs-diode only allows data transfer in one direction – from black to red. The flow of information in the opposite direction is completely blocked. This ensures that no classified or critical data can flow from the red network to the black network at this interface. An important feature of the Data Diode vs-diode is its high performance and reliability in one-way data transfer: throughput of up to more than 8 Gbit/s. The strong performance is based on the intelligent technology of our data diodes, which is significanctly different than that used in other solutions on the market. Approval up to the SECRET Classification Level The compact design is the key feature of the vs-diode and has also convinced the German Federal Office for Information Security (BSI), which has granted approval up to the German SECRET, SECRET UE/EU SECRET, and NATO SECRET classification levels. Thus, the high level of security provided by our solution has been independently verified by a government organization. Strict One-Way Data Transfer Performance: Fast and Reliable Data Transfer One firewall system is connected to the black network and receives the data being transferred from the sender. The received data can optionally be scanned here for viruses and malicious software to protect the red network. The data is then sent via the filter system to the second firewall, which is connected to the red network. This intermediate filter system allows communication in the one direction but blocks all data transfer in the other – with a single exception: a final status message, indicating whether all data has been properly received, is allowed to pass from the second to the first firewall system. This minimal feedback ensures quick and reliable transmission e.g. for the FTP(S), SMTP(S), and TCP protocols. Data transfer from the black network into the red network through the vs-diode Low Complexity Security by Design for Maximum Security How does this minimal feedback channel affect the security level? Other diode solutions intentionally avoid using a feedback channel – and thus also forego the advantages in performance and reliably that it offers – in order to physically exclude any return flow of data. With the vs-diode, we solved this challenge using modern technology: programming of the central diode function is kept to a minimum – only a few hundred lines of program code – and runs on a microkernel operating system that has also been reduced to an absolute minimum. Due to the low complexity, the diode process is easy to analyze; the entire code can be examined or even formally verified to exclude the possibility of errors in this decisive component. Configuring Important Applications for High Security With the one way data diode vs-diode, you can securely configure high-speed and reliable data transfers from black to red networks. Examples include: connecting to e-mail systems mirroring databases for GIS and FüInfoSys streaming video and radar data transferring data for anti-virus and software updates Support & Service User-Friendly Operation and Customer Service Due to its minimalist design, the vs-diode is easy to operate. Even in the event of a configuration error, no security vulnerabilities can be exploited – the static diode function cannot be defeated. We will be happy to assist you with the installation and support – service is provided directly from the manufacturer genua. Our sales team will be glad to answer your questions. We are looking forward to get in touch with you. Contact Us

Adva FSP 150-XG118Pro with genucenter administration capability

Adva FSP 150-XG118Pro Approved Adva FSP 150-XG118Pro: Fast and Secure Transfers of Sensitive Data Authorities, operators of critical infrastructure, and other providers of essential services need highly secure IT infrastructures and the ability to transmit sensitive data securely encrypted via public networks. The FSP 150-XG118Pro layer 2 network access device with genucenter manageability is approved for the transmission of classified information up to German VS-NfD and EU/NATO RESTRICTED. It offers up to 82 Gbit/s total capacity through expandability to up to eight Ethernet interfaces with 1 Gbit/s or 10 Gbit/s throughput as well as crypto agility and post-quantum cryptography for reliable protection of sensitive data traffic. Request advice Top Highlights End-to-end network-layer-2 encryption of Ethernet connections Approval for German VS-NfD and EU/NATO RESTRICTED Convenient central administration via genucenter Your Benefits at a Glance Convenient management via the Central Management Station genucenter Hardware-based ConnectGuard TM end-to-end encryption on network layer 2 Crypto agility and protection of key exchange and data through security module Synchronisation and Timing via PTP and SyncE Optional server module for virtualized network functions Approval for the classification levels German VS-NfD and EU/NATO RESTRICTED Port and VLAN-based aggregation through queuing/shaping, QoS, LAG Powerful MACsec encryption with up to 10G/link at up to 8 links/device: VLAN support, easy crypto handling, multi-tenancy Future-proof through post-quantum cryptography (PQC), DWDM option for high bandwidths Carrier-grade Ethernet with central monitoring and visualization: MEF3.0 certified, automated provisioning via WebUI and CLI, service-oriented management and operation Highlights Adva FSP 150-XG118Pro Information material Request 01 Highly Secure Metro & VPN Networks 02 Powerful Network Access Device 03 Compatible with genua’s VPN Ecosystem Highly Secure Metro & VPN Networks Seamless Integration of Layer 2 and Layer 3 genua and Adva Network Security have signed a long-term strategic cooperation agreement. The two companies are combining their expertise in highly secure Metro and VPN networks to create an integrated solution intended for customers with high protection requirements and ensuring maximum IT security and performance. Typically, site networking uses various VPN technologies. With a layer 2 VPN, for example, data can be transmitted securely between two data centres via encrypted Ethernet connections, ensuring complete transparency for higher network layers. Layer 3 VPN enables the secure transmission of individual data streams between two end devices on an IP basis, regardless of the transmission technology (e.g., DSL, mobile radio, WLAN). Central sites are usually connected by means of layer 2 encryption, like that from Adva Network Security, whereas smaller sites, home offices or mobile users can be securely connected using genua's layer 3 technology. Network-layer-2/layer-3 encryption with integrated administration capability Powerful Network Access Device Hardware-Based Protection with Integrated Security Module With the FSP 150-XG118Pro, Adva Network Security has developed a powerful network access device that reliably protects sensitive data and enables the use of services with high bandwidth requirements and redundant routing. MEF-3.0-compliant Carrier Ethernet and IP connections are hardware-based and low latency encrypted. Crypto agility is achieved through a security module that also reliably protects the generation and use of key material and securely stores sensitive data. Compatible with genua’s VPN Ecosystem With its Metro Ethernet functions and approved encryption on layer 2, the FSP 150-XG118Pro complements the also approved layer 3 solution genuscreen for use in multi-layer networks of authorities, critical infrastructure organizations, and companies. A particular advantage of the cooperation between genua and Adva Network Security results from the integrated configuration and administration of the combined layer 2/layer 3 encryption via the Central Management Station genucenter . This means that users benefit from particularly convenient and efficient site networking in critical environments. Central Management Station genucenter Convenient and efficient administration of IT security solutions Firewall & VPN Appliance genuscreen Reliable protection for data transfers and networks Certified Approved Our sales team will be glad to answer your questions. We are looking forward to get in touch with you. Contact Us

genuconnect Enterprise: VPN software client for companies

VPN Software Client genuconnect Enterprise VPN Software Client for Secure Remote Access to Company Networks Employees who access confidential company data on the go must rely on appropriate security of the connection – and expect that security features do not interrupt the workflow. genuconnect Enterprise provides your organization with a security level comparable to approved solutions. The VPN software client connects laptops and tablets with Microsoft Windows 10 or 11 easily and reliably to company networks. And if your security needs increase: simply switch to the approved genuconnect version. genuconnect Enterprise automatically establishes a highly secure VPN connection for all users. The interoperability with hard disk encryption, device control and endpoint protection is also ensured. The solution is characterized by low complexity, high scalability, and convincing usability. Request advice Top Highlights VPN software client “Made in Germany” for secure access to confidential data Enables easy switching to the approved version genuconnect Powerful, flexible, and scalable for infrastructures with more than 100,000 VPN clients Your Benefits at a Glance Based on a highly secure VPN software client with BSI approval, enables easy switching to the approved version Secure VPN technology "Made in Germany" for data communication via untrusted networks Optimum usability: automatic connection establishment without user interaction possible Complete integration in Microsoft Windows High scalability: Can be used with more than 100,000 VPN clients All crypto components developed by genua 2-factor authentication (soft token and password/pin) Compatible with common roll-out mechanisms Highlights VPN Software Client genuconnect Enterprise Information material Request 01 Unique IT Security Architecture 02 Flexible & Secure 03 Future-Proof VPN Ecosystem Unique IT Security Architecture Simple and Convenient Administration genuconnect Enterprise is characterized by interoperability with hard disk encryption, device control, and endpoint protection. It is compatible with the Microsoft ecosystem, which simplifies the installation, configuration, uninstallation, and updates. Designed for laptops and tablets with Microsoft 10 or 11, the VPN Software Client uses the existing Microsoft security functions. Its unique IT security architecture is based on proven IPsec technology with multi-factor authentication. Flexible & Secure Scalable and Backend Friendly genuconnect Enterprise stands for requirement-based security from a single provider. The solution scales easily for infrastructures with more than 100,000 VPN clients. Would you like to enable highly secure connections in classified networks in the future? Changing from genuconnect Enterprise to genuconnect is possible without additional hardware or backend readjustment. All you need to switch is the approved VPN Software Client genuconnect and a smart card. Future-Proof VPN Ecosystem Complete VPN Ecosystem for Increasing Security Requirements With the genuscreen VPN gateway and a selection of different clients, genua offers a complete VPN ecosystem “Made in Germany”. With genua's VPN ecosystem, companies and government organizations have the opportunity to flexibly set up secure remote workplaces according to their individual requirements. Users of genuconnect Enterprise also benefit from the special advantage of being able to easily switch to the VPN Software Client genuconnect with BSI approval in order to process classified information and other sensitive data at home or on the go if necessary. In combination with the Firewall & VPN Appliance genuscreen , you receive a flexible and conveniently administrated complete solution for VS-NfD communication from a single source. Of course, we offer customers specialized advice for a holistic BSI-compliant IT security concept. Secure connection to internal networks with the VPN Software Client genuconnect Enterprise Our sales team will be glad to answer your questions. We are looking forward to get in touch with you. Contact Us

Industrial Firewall genuwall from genua

Industrial Firewall genuwall Industrial Firewall genuwall: Strong Protection for Production Networks An industrial firewall offers strong production network security: All data in the production area is available at all times and confidentiality and integrity are always ensured. Their use is recommended by leading industrial associations, such as the VDMA. After all, cyber attacks and malicious software can spread through the entire network at any time and cause severe damage. The consequences include plant and machinery malfunctions, expensive standstills, delivery problems and, last but not least, damage to your reputation. Request advice Top Highlights More than a firewall: Data filtering at application level Based on a proven IT security solution audited by the BSI Throughput up to 2 Gbit/s genua is certified according to IEC 62443-4-1, the leading standard for security in industrial automation Your Benefits at a Glance Detection and rejection of impermissible data packets (OPC UA, Modbus TCP, IEC 60870-5-104) High security during the segmentation of (OT) networks Defense against industrial spying Reduction in the risk of third-party influence and production downtime Transparency of changes and access (logging, reporting/monitoring) Fast and simple integration in existing networks Flexible usability: standalone configuration and central management possible Simple (re-)installation via USB-(re-)boot Product based on a proven IT security solution audited by the BSI Advanced update mechanism protects against attacks with quantum computers Highlights Industrial Firewall genuwall Hardware variants Information material Request 01 Highly Effective Barriers Against Attacks 02 Zoning Within a Company's Network 03 Management Station Highly Effective Barriers Against Attacks Ideally Equipped with genuwall Industrial Firewall With the Industrial Firewall genuwall, you can implement highly effective barriers against attacks in your production networks (LAN, WAN, and VLAN). Depending on the protection requirements, security zones can be configured for individual machines, complete production systems or even production areas. Separation is provided by genuwall. For effective control, the industrial firewall reliably scans all data communications and allows only the desired connections. genuwall handles more than just routing: To create internal security zones, you can, e.g., add the firewall to your network in bridging mode as an invisible stealth system without changing an IP address. genuwall also offers the following services: DHCP, DNS and NTP. These ensure comfortable administration of your network. Thanks to source and destination NAT, you can easily integrate identical IP address ranges in a production network. In addition, network IP addresses can be hidden from the outside. Zoning Within a Company's Network Strong Firewall Protection Through Network Segmentation Production networks with a simple security architecture offer attackers and malicious software maximum areas of attack: Once the firewall is breached, all components and data in the network are endangered. Through the use of zones, it is possible to prevent your entire production infrastructure from being compromised. Increasing the number of zones decreases the risk of danger. Security problems can easily be detected as a result – time lost, the damage suffered and the costs resulting from a compromised system are significantly reduced. In addition, a verifiable risk reduction solution for your production systems improves your positions in security and supplier audits. Network segmentation using the Industrial Firewall genuwall: Zoning within a company's network for secure production areas Simple Integration An industrial firewall is installed at the network boundaries between the security zones. The appliance is very easy to integrate to minimize the amount of work you need to perform. A single appliance achieves a data throughput of up to 2 Gbit/s. Higher performance requirements can be satisfied with clusters. These guarantee high availability at important interfaces. For use in production networks, we offer genuwall on rugged industrial hardware. Management Station Easy Administration The Industrial Firewall genuwall is administrated via a central management station or a stand-alone GUI . The management station enables operation of large installations with many appliances. These may even be distributed worldwide. As a result, security policies, logging and bulk operation can easily be implemented. The centralized distribution of patches ensures that your entire system is always up-to-date. You can thereby operate a unified security infrastructure and reliably protect all network segments with very little effort. The Central Management Station genucenter also supports solutions for plant monitoring and secure remote maintenance. This means you can easily expand your industrial security at any time if required. genuwall: Based on a Certified Firewall The Industrial Firewall genuwall offers IT Security Made in Germany. It is based on the proven genuscreen firewall . This is certified by the German Federal Office for Information Security (BSI) according to the international Standard Common Criteria (CC) at the strict EAL 4+ level. With genuwall, you obtain a high-quality security solution that can’t be defeated even by skilled attackers. Firewall & VPN Appliance genuscreen Reliable protection for data transfers and networks Certified Approved Our sales team will be glad to answer your questions. We are looking forward to get in touch with you. Contact Us

VPN Software Client genuconnect | genua

VPN Software Client genuconnect Approved VPN Software Client genuconnect: Secure Connection to Classified Networks Those who work for government organizations or companies in industries with an obligation to maintain secrecy units must generally be able to rely on a corresponding safeguarding of the connection – and expect that security features do not interrupt the workflow. Maximum security and functionality when using laptops or tablets with Microsoft Windows 10 or 11 is provided by the VPN Software Client genuconnect. It protects the connections of these mobile devices against unauthorized access and scales with growing infrastructure. Request advice Top Highlights Approval for classification levels German VS-NfD, NATO RESTRICTED, and RESTREINT UE/EU RESTRICTED Secure VPN technology "Made in Germany" for data communication via untrusted networks Optimum usability: automatic connection establishment without user interaction possible Authentication via the user's smart card and complete integration in Microsoft Windows Your Benefits at a Glance Complete integration in Microsoft Windows High scalability: Can be used with more than 100,000 VPN clients All crypto components developed by genua Authentication via the user's smart card Supports quantum-resistant VPN with approval for the classification levels German VS-NfD, NATO RESTRICTED, and RESTREINT UE/EU RESTRICTED Compatible with common roll-out mechanisms Seamless integration into public key infrastructures (PKI) Highlights VPN Software Client genuconnect Information material Request 01 Highly Secure VPN Connection 02 Security Assistent 03 Proven IPsec Technology Highly Secure VPN Connection Security on the Move with VPN Software Client and Smart Card genuconnect sets up a highly secure VPN connection between remote workstations and the organization's network simply and conveniently using an app. Sensitive data is thus securely protected by genuconnect at all times even when communicating from remote. Mandatory use of smart cards provides an additional level of security. Combined with a certificate solution, genuconnect provides you with a ready-to-use, flexible and easily administrable complete solution for communication at classification level German VS-NfD. Security Assistent Fast and Simple Use as Security Assistant genuconnect ensures the security of the connections of laptops and tablets with Microsoft Windows 10 or 11 and thereby offers high usability. Users benefit from a native and modern graphical user interface (GUI). Windows performance without compromise and usability of the entire functionality within the framework of the system configuration are a matter of course when using the security assistant. Moreover, the VPN software client is compatible with the Microsoft ecosystem. genuconnect can be managed with the existing Windows tools, making installation, configuration, update, and uninstallation quick and easy. With genuconnect, mobile devices such as laptops and tablets can be connected to internal IT networks in a highly secure manner. The VPN software client is fully integrated into Windows and is managed using Windows tools. Proven IPsec Technology Powerful, Flexible, and Scalable A unique IT security architecture makes genuconnect especially powerful: proven IPsec technology and BSI-compliant crypto algorithms in combination with a smart card provide users with maximum protection. genuconnect can be used with common smart cards. Authentication for use of the laptop or tablet is performed easily by means of Windows login or as automatic login via smart card. The solution can easily be scaled for operational environments with more than 100,000 VPN clients. Highly secure connection of Windows devices with the VPN Software Client genuconnect Our sales team will be glad to answer your questions. We are looking forward to get in touch with you. Contact Us

genutrust: Highly Secure Certificate Solution Compliant

Highly Secure Certificate Solution genutrust genutrust: Highly Secure Certificate Solution Compliant with Classification Level German VS-NfD Private and public sector organizations that are unable to directly access the government public key infrastructure (GPKI) use VPN clients such as genuconnect. For this purpose, they require smart cards with the suitable certificates. The Certificate Solution genutrust enables the required number of VPN certificates to be acquired as well as e-mail certificates to be set up on smart cards. The automated creation of the smard cards contributes to the relief of IT administration staff. Moreover, genutrust meets all requirements of the German Federal Office for Information Security (BSI) with respect to a PKI and is compliant with classification level German VS-NfD. Request advice Top Highlights Use of all advantages of the D-Trust PKI Automated process for smart card production Complete VS-NfD ecosystem from a single source Your Benefits at a Glance Acquisition of certificates in accordance with the guidelines TR-03145-1.1 and TR-03145-VS-NfD Optimized initialization process with automatisms for smart cards Simple usage within existing infrastructures Bundles available with various quantities of certificates Use of all advantages of the D-Trust public key infrastructure (PKI) Complete VPN ecosystem for classification level German VS-NfD available from a single source Trustworthy solution "Made in Germany" Customer service directly from the manufacturer Highlights Highly Secure Certificate Solution genutrust Hardware variants Information material Request 01 D-Trust PKI 02 Highly Secure VPN Connection D-Trust PKI Complete Package for Individual Business Units and Large Organizations The Certificate Solution genutrust includes a newly developed initialization server for acquiring digital certificates from D-Trust GmbH. These certificates meet all BSI requirements – organizations can therefore utilize all the benefits of the D-Trust PKI without the expense and effort of having to set up their own infrastructure. Furthermore, the initialization server functions as the central platform for collecting the smart card information as well as controlling the smart card printer. This enables the fully automated production of ready-to-use smart cards. genutrust is compatible with the VPN solutions from genua: The certificates can be used, e.g., for genuconnect with IKEv2. Keys without certificates can also be generated. Smart card provisioning with the genutrust certificate solution Highly Secure VPN Connection Security on the Move with VPN Software Client and Smart Card genuconnect sets up a highly secure VPN connection between remote workstations and the organization's network simply and conveniently using an app. Sensitive data is thus securely protected by the VPN Software Client genuconnect at all times even when communicating from remote. Mandatory use of smart cards provides an additional level of security. Combined with the Certificate Solution genutrust, genuconnect provides you with a ready-to-use, flexible and easily administrable complete solution for secure communication at classification level German VS-NfD from a single source. Central Management Station genucenter Convenient and efficient administration of IT security solutions Our sales team will be glad to answer your questions. We are looking forward to get in touch with you. Contact Us

1 2 3 4 5 6 7 8 9 10 11 12 13 14
Contact
+ 49 89 991950-0
+ 49 89 991950-999
info(at)genua.de
  • Genua Security made in Germany Logo
  • Genua Tüv certificate
  • Genua Tüv Rheinland Zertifikat
  • Genua Tüv Zertifikat
  • © 2026 genua
  • GCC
  • Imprint
  • Data Protection and Privacy
  • Whistleblowing System
  • Terms of use
genua bdr signet