Kryptos Device Management

Kryptos Device Management includes the following five components

  • Device configurator
  • Device OS updater
  • Security policy enforcement
  • Always-ON VPN connection
  • App white-listing

Kryptos Device Management also includes cloud hosting solution. We provide Kryptos backend infrastructure to support communication apps. High level architecture details below:

  • Encrypted instant messaging
    • Two options: Installed, configured and managed by customer or hosted by Kryptos
    • Industry standard chat protocol with support for “Off The Record” or OTR message encryption
    • Additional support for “single use keys” – a unique key for every IM session
    • Key exchange directly between devices and option for a server mediated key exchange
  • Encrypted calls
    • Two options: Installed, configured and managed by customer or hosted by Kryptos
    • Industry standard robust VOIP based service with support for SRTP and ZRTP encrypted calls and key exchange protocols
    • With ZRTP, key exchange is accomplished directly between the smartphones for plausible deniability (by the customer)
  • Encrypted email:
    • Robust and highly scalable email services (IMAP and SMTP compliant)
    • Runs on a hardened Linux distribution
    • Can use Customer’s existing backend email application – in this case Kryptos Email backend is not needed
    • PGP or SMIME compliant email encryption
    • Can use hardware platform for random number generation and key generation
    • Supports both RSA and ECC keys
    • Customers may use Kryptos hosted email service or self-host email servers in their existing IT infrastructure