Beyond FTP Encryption
Beyond FTP currently incorporates two types of encryption, one for international
and domestic distribution (standard shipping version), and one for
domestic distribution only (U.S. and Canada).
Note that
the domestic version is free of charge for licensed and registered owners of Beyond
FTP
located in the U.S. and Canada.
Click here
to request the domestic version.
The domestic
version of Beyond FTP allows you to choose between two highly secure industry
standard encryption algorithms: the first, Rijndael,
pronounced "Rain Doll", was selected by the National
Institute of Standards and Technology (NIST) as the
Advanced
Encryption Standard (AES) and will be the Federal Information
Processing Standard (FIPS); the second, Twofish,
was designed by Counterpane Labs and was one of five AES
finalists.
The international
version has two encryption algorithms: one is a proprietary encryption algorithm of Automated Programming
Technologies, Inc. and is comparable to standard 40-bit strength
algorithms; the second is DES, a 56-bit algorithm that was formally the
AES and FIPS standard. These algorithms, while effective, are weak when
compared to both Rijndael and Twofish.
Both the
Rijndael and Twofish
algorithms employ encryption strengths (key sizes) of 128,
192 or 256-bits.
In decimal
terms, this means that there are approximately:
3.4 x 1038
possible 128 bit keys;
6.2 x 1057
possible 192 bit keys;
and 1.1 x 1077
possible 256 bit keys.
In comparison,
DES keys are 56 bits long, which means there are approximately 7.2 x 1016
possible DES keys. Thus, there are on the order of 1021 times
more AES 128-bit keys than DES 56-bit keys.
Beyond FTP uses private "keys" to
encrypt and decrypt data. This means that the "key"
never leaves the source or target machines, and cannot be intercepted on
the Internet.
Beyond FTP keys are generated by applying the
Secure Hashing Algorithm (proposed FIPS SHA-2 256-bit) to a user supplied
phrase.
Beyond FTP
uses these encryption algorithms to encrypt all data
before it leaves the source machine. The data is then decrypted only when it has
been successfully received by the target machine.
Note that with Lock-SAFE™ Technology, Beyond FTP encryption is
supported when sending data between Beyond FTP Servers, Beyond FTP
Clients, and any standard FTP Server.
If your company is located in the domestic
United States or Canada and you have bought a license of Beyond FTP, then you are
eligible to upgrade to the domestic only (non-exportable) version of
Beyond FTP.
Please call 810-225-0588
to request an upgraded encryption module.
|