> PKWARE > Using SecureZIP to Deliver Strong Security on a Mainframe
Using SecureZIP to Deliver Strong Security on a Mainframe White Paper Published By:
PKWARE
A security breach on a workhorse platform like a mainframe could be disastrous. Find out why PKWARE's SecureZIP is ideal for providing file security for data stored and transferred on mainframes.
Javascript Disabled To use our site, you must enable JavaScript.
Published:
Aug 21, 2009
Type:
White Paper
Length:
7 pages
White Paper
Using SecureZIP to Deliver
Strong Security on a MainframeWhite Paper
As if corporate pressures alone were not enough to drive your organization to fi nd better security solutions, legislative changes now force that obligation on you. With the introduction of Federal data security mandates such as Gramm-Leach-Bliley (GLBA), the Health Insurance Portability and Accountability Act (HIPAA), and Sarbanes-Oxley (SOX), your enterprise is now required by law to increase data protection.and in a timely manner.
When it comes to mainframe security, leading products in enterprise server security management dominate the landscape - products such as RACF, ACF2, and Top Secret. However, once corporate data passes outside the fi rewall onto public networks - so that transactions with clients and business partners can take place - that data is susceptible to the malicious and unforgiving world of hackers and others seeking to intercept valuable data. Unfortunately, this is also a world of heterogeneous networks and operating systems, a world where RACF, ACF2, and Top Secret can't provide protection.
Mainframe Data Security OptionsMost of today's solutions address some security requirements but remain partial solutions at best. Secure and dedicated lines, SSL, and VPNs are just a few examples of how data can be secured in transit; however, these options do not secure data beyond either end of a transmission or in storage. Once data leaves the secure connection and has been moved onto another system, it is no longer protected.
In addition to providing only partial protection, the above solutions are often expensive and diffi cult to implement and confi gure. Moreover, they have not been conducive to broad deployment and usage. These solutions typically:
? Are very complex to implement and support? Require signifi cant infrastructure investment? Increase storage, processing, and bandwidth requirements for existingplatforms and networks? Impose signifi cant infrastructure burdens on external partners and customers in order to achieve secure interoperability outside the fi rewall
In order to ensure data integrity, a security solution must provide protection while the data is both in storage and in transit. Government regulations require that certain types of data, such as consumer records and protected health information (PHI) are secure at all times. Instead of managing different rules for different types of data, more and more businesses are adopting similar rules for all types of corporate data. Such persistent security is the only truly complete security, as everything else leaves valuable information unprotected.
How it Works: Strong Password Based Encryption Encryption protects the privacy of data. Regular, unprotected data is called plaintext. Encryption transforms plaintext into an unreadable form, called ciphertext, using an encryption key. Decryption transforms the ciphertext back into plaintext using a decryption key. The encryption of plaintext into ciphertext and the decryption back into plaintext is done using computer algorithms. Several algorithms have been approved under the Federal Information Processing Standard (FIPS) for the 2 Copyright© 2004 PKWARE, Inc. and its licensors. All rights reserved. Trademarks of other companies mentioned in this documentation appear for identifi cation purposes only and are property of their respective companies. SecureZIP is a trade mark and PKZIP is a registered trade mark of PKWARE, Inc.White Paper
encryption of general purpose data. Each of these algorithms is a symmetric key algorithm, where the encryption key is the same as the decryption key - specifi cally, a password or passphrase. In order to maintain the privacy of the data encrypted by a key, the key must be known only by the entities that are authorized to access the data. The algorithms used are commonly known as block cipher algorithms, because the encryption and decryption processes each operate on blocks of data of a fi xed size.
Public/Private Key Asymmetric Encryption Using public/private key asymmetric encryption provides a higher level of security compared to password-based encryption. Asymmetric encryption uses a publicly available key to encrypt data. Decrypting a fi le that has been encrypted with a public key requires the presence of the corresponding private key in order for decryption to take place. When the private decr... [download for more]
Browse Technology Topics
Application Integration ,
Analytical Applications ,
Business Intelligence ... more , Configuration Management , Database Development , Data Integration , Data Mining , Data Protection , Data Quality , Data Replication , Database Security , EDI , SOAP , Service Oriented Architecture , Web Service Management , Data Warehousing less Analog Communications ,
Digital Signal Processing ,
Electronic Design Automation ... more , System On A Chip , Electronic Test and Measurement , Embedded Design , Boards & Modules , Embedded Systems and Networking , Electromechanical & Mechanical , Optoelectonics & Displays , Packaging and Interconnects , Passive & Discrete Components , Power Sources & Conditioning Devices , Integrated Circuits and Semiconductors , Sensors & Actuators less Application Integration ,
Application Performance Management ... more , Best Practices , Business Activity Monitoring , Business Analytics , Business Integration , Business Intelligence , Business Management , Business Metrics , Business Process Automation , Business Process Management , Call Center Management , Call Center Software , Change Management , Corporate Governance , Customer Interaction Service , Customer Relationship Management , Customer Satisfaction , Customer Service , EBusiness , Enterprise Resource Planning , Enterprise Software , EProcurement , Extranets , Groupware Workflow , HIPAA Compliance , IP Faxing , IT Spending , Marketing Automation , Performance Testing , Product Lifecycle Management , Project Management , Return On Investment , Risk Management , Sales & Marketing Software , Sales Automation , Server Virtualization , Simulation Software , Supply Chain Management , System Management Software , Total Cost of Ownership , Video Conferencing , Voice Recognition , Voice Over IP , Workforce Management , Incentive Compensation , Spend Management , Manufacturing Execution Systems , International Computing less Human Resources Services ,
Payroll Software ,
Time and Attendance Software ... more , Workforce Management Software , Financial Management , Employee Monitoring Software , Employee Training Software , Recruiting Software/Services , Employee Performance Management , ELearning , Benefits Management , Expense Management less Collaboration ,
Collaborative Commerce ,
Contact Management ... more , Content Delivery , Content Integration , Content Management System , Corporate Portals , Customer Experience Management , Document Management , Information Management , Intranets , Messaging , Records Management , Search And Retrieval , Search Engines , Secure Content Management , SLA less Active Directory ,
Bandwidth Management ,
Convergence ,
Distributed Computing ... more , Ethernet Networking , Fibre Channel , Gigabit Networking , Governance , Grid Computing , Infrastructure , Internetworking Hardware , Interoperability , IP Networks , IP Telephony , Local Area Networking , Load Balancing , Migration , Monitoring , Network Architecture , Network Management , Network Performance , Network Performance Management , Network Provisioning , Network Security , OLAP , Optical Networking , Quality Of Service , Remote Access , Remote Network Management , Server Hardware , Servers , Small Business Networks , TCP/IP Protocol , Test And Measurement , Traffic Management , Tunneling , Utility Computing , VPN , Wide Area Networks , Green Computing , Cloud Computing , Power and Cooling , Data Center Design and Management , Colocation and Web Hosting less AS/400 ,
Domino ,
Linux ,
Microsoft Exchange ,
Oracle ,
PeopleSoft ... more , SAP , Siebel , Solaris , Tivoli , Unix , Web Sphere , Windows , Windows Server less Access Control ,
Anti Spam ,
Anti Spyware ,
Anti Virus ,
Application Security ... more , Auditing , Authentication , Biometrics , Business Continuity , Compliance , DDoS , Disaster Recovery , Email Security , Encryption , Firewalls , Hacker Detection , High Availability , Identity Management , Internet Security , Intrusion Detection , Intrusion Prevention , IPSec , Network Security Appliance , Password Management , Patch Management , Phishing , PKI , Policy Based Management , Security Management , Security Policies , Single Sign On , SSL , Secure Instant Messaging , Web Service Security , PCI Compliance , Vulnerability Management less .NET ,
C++ ,
Database Development ,
Java ,
Middleware ,
Open Source ... more , Software Outsourcing , Quality Assurance , Scripting , SOAP , Software Testing , Visual Basic , Web Development , Web Services , Web Service Security , XML less Backup And Recovery ,
Blade Servers ,
Clustering ,
IP Storage ... more , ISCSI , Network Attached Storage , RAID , Storage Area Networks , Storage Management , Storage Virtualization , Email Archiving , Data Deduplication less 802.11 ,
Bluetooth ,
CDMA ,
GPS ,
Mobile Computing ,
Mobile Data Systems ... more , Mobile Workers , PDA , RFID , Smart Phones , WiFi , Wireless Application Software , Wireless Communications , Wireless Hardware , Wireless Infrastructure , Wireless Messaging , Wireless Phones , Wireless Security , Wireless Service Providers , WLAN less