High Sec Labs tri
product banner

Secure Desktop PC

Download Product Brochure

Have you ever wondered how it is possible that kids in the kindergarten using the same PCs that the CIA employees are using? Strange isn’t it? One size fits all? What about security? In the new world of networking and cyber attacks, commercial PCs are the wrong machine for the job (if your job deals with classified data). There is a worldwide need and effort to develop desktop PCs that will provide much better protection compared to commercial PCs.

Although the changes needed are very fundamental, the effort in developing such platforms is to make them affordable (cost wise) and compatible with existing networks, Operating Systems and applications. HSL is working hand in hand with some key customers worldwide in an effort to develop a secure desktop that will answer these customer’s specific needs.

HSL’s Secure Desktop is not about TEMPEST and electromagnetic emissions – these are not the primary threats today. It is also not the security “patch” offered by TPM or other add-on modules. Primary threats today are infected networks, software and the internal (trusted) users. HSL Secure Desktop relies on the latest hardware / firmware security tools to protect the desktop PC from wide range of threats. Most of these tools are operating before BIOS (or UEFI) is even loaded and run.

One of the key challenges in this project is the timeframe. It takes few years to develop test and certify a platform like this. It typically takes 1 year for a PC platform to become obsolete as the technologies involved are changed rapidly. HSL addressed this challenge by developing a set of fully tested and evaluated protection tools that can be easily implemented on the target motherboard and enclosure. This method reduces the time to market of a Secure Desktop and still provides the best set of protection means.

This web page provides preliminary and partial inform only as products are currently in development and are not declassified yet.

Overview Models Specs Photos Download Order  
  • Highest security by design Project goals and design set by several defense organizations to support users working with classified to National security networks. Product will be evaluated to Common Criteria EAL 5+ based on a new Protection Profile that is under development now.

  • Hardware Based peripheral protection/isolation Absolutely no dependency on BIOS, OS or software applications. All peripheral protection functions are operating independently of all other functions, can't be managed, disabled or upgraded.

  • Unidirectional optical data diodes used to secure USB peripherals isolation. Data can flow from devices to the PC only. No reverse data flow possible by physics.

  • Cost Effective This product was designed to provide an affordable solution for agencies and organizations. Cost reduction processes are taken to reduce production costs.

  • Compatibility Product was designed to operate with standard operating systems, drivers, peripherals and networks.

  • Anti-tampering Latest active and passive anti-tampering technologies were implemented to prevent access by unauthorized personnel.

  • Internal KVM option Optional Secure KVM integrated inside the product to enable secure connection to a second computer.

  • Fiber LAN interface Optional SFP cage that suports all fiber 100 and Giga LAN protocols.

  • Strong device authentication HSL Secure desktop provides the latest set of tools to enable strong device authentication and chain of trust.

  • Realistic environment assumptions Product design assumes that connected network is infected and that the user is hostile or semi-hostile.

  • Special BIOS (UEFI) Developed to prevent any settings (configuration), CMOS, RTC and to prevent BIOS attacks. UEFI is loaded on a ROM to prevent changes and upgrades.

To top of page
Copyright 2011 High Sec Labs Ltd. All rights reserved.