Overview
FIPS 140-2 Level 3 compliant Tamper proof & evident design. All critical components are covered by a layer of super tough epoxy resin, which is virtually impossible to remove without causing permanent damage to the critical components. If breached, the tamper evident design of the datAshur PRO² will provide visible evidence that tampering has occurred.
Independent user & admin PIN makes it perfect for corporate and government deployment. If the user forgets their PIN, the drive can be unlocked by the admin PIN, the admin can then allow the user to set a new PIN.
Key Features
Our highest capacity
PIN authenticated, hardware encrypted USB flash drive with capacities up to 512GB.
OS & platform independent
With no software required. Cross-platform compatible with: MS Windows, macOS, Linux, Android, Chrome, Thin Clients, Zero Clients, Embedded Systems, Citrix, VMware, DVR’s, Medical Equipment, Printers, Scanners, CCTV. In fact, it will work on any device with a USB port!
Government validations
FIPS 140-2 Level 3, NCSC CPA, NLNCSA BSPA & NATO Restricted validations (pending Q3 2019)
FIPS 140-2 Level 3 compliant Tamper proof & evident design
All critical components are covered by a layer of super tough epoxy resin, which is virtually impossible to remove without causing permanent damage to the critical components. If breached, the tamper evident design of the datAshur PRO2 will provide visible evidence that tampering has occurred.
Superspeed USB 3.2 (Generation 1×1)
Backwards compatible with older USB ports.
Inactivity Auto-lock
Configurable to lock after a predetermined period of inactivity. datAshur PRO2 also automatically locks when unplugged from the host device or when power to the USB port is turned off.
Immune to Bad USB
Both the USB Cryptochip and Secure Microprocessor incorporate digitally-signed flash lock mechanisms making the datAshur PRO2 immune to Bad USB.
Read only (write protect) – Dual Mode
Both Admin and User can configure the datAshur PRO2 as a read only (write protect) device. If configured by the Admin, the device cannot be modified or disabled by the User allowing the Admin to pre-provision a device with pre-loaded content as read-only for the User.
User PIN enrolment
Admin can set a restriction policy for the User PIN. This includes setting the minimum length of the PIN, as well as requiring the input of one or more ‘Special Character’ if needed.
The ‘Special Character’ functions as ‘SHIFT + digit’
On-device Crypto-chip
Offering 100% real-time military grade AES-XTS 256 bit Hardware Encryption with FIPS PUB 197 validated encryption algorithm
Uniquely incorporates Common Criteria EAL4+ ready secure microprocessor
Offers ultimate security against hackers, detecting and responding to tampering with features such as:
• Dedicated hardware for protection against SPA/ DPA/SEMA, DEMA attacks
• Advanced protection against physical attacks, including Active Shield, Enhance Protection Object, CStack checker, Slope Detector and Parity Errors
• Environmental Protection Systems protecting against voltage monitor, frequency monitor, temperature monitor and light protection
• Secure Memory Management/Access Protection
IP68 certified
Dust and water resistant. Includes hard anodized and ruggedised extruded aluminium protective sleeve.
Polymer coated, wear resistant on-board alphanumeric keypad
The datAshur PRO2 is authenticated (unlocked) and all functions are performed using the onboard keypad and with zero host involvement, the device is not vulnerable to key-loggers and/or brute force attacks.
The datAshur PRO2 keypad is coated with a layer of wear resistant polymer for added protection.
User & Admin PIN authenticated
Supports independent User and Admin PINs
Bootable feature
Install an OS on the datAshur PRO2 and boot directly from it.
Lock override mode
Ideal in certain cases where the datAshur PRO2 needs to remain unlocked through USB port re-enumeration, such as during a reboot process or passing the device through a virtual machine.
One-time User recovery PIN
Admin configurable, extremely useful in situations where a User has forgotten their PIN, allowing the User to unlock the device and set a new User PIN.