Sematicon
Simple cryptography for industry and IoT
At the joint stand with Microsoft, Sematicon presented cryptographic hardware modules from the se.SAM series for industry together with the industrial cyber security solution and maintenance log se.MIS.
Sematicon developed the "Security and Authentication Module" - se.SAM for short - to simplify the use of security elements and specifically to meet the requirements of industrial, electronic, IoT and IIoT systems. They are available in different form factors depending on the area of application: as a chip for development and as mini PCI Express for integration into edge computers, gateways and SCADA systems as well as for retrofitting devices with a USB interface. The plug-in devices for the 19" rack are particularly suitable for use in data centers. The cryptography can be used seamlessly from the chip to the cloud.
The se.SAM crypto systems are certified according to Common Criteria EAL6+ (hardware and operating system of the crypto processor) and the EU Directive 2014/32/EU as well as the WELMEC software guidelines for measuring devices (V7.2, 2015) are taken into account. Depending on the model, the products operate in a temperature range from -40 °C to +90 °C and are resistant to interference, water and shock. As they are driverless and independent of the operating system and architecture, they can be used via "plug & play".
With se.SAM, all cryptographic keys are generated in special security hardware and the cryptographic functions are calculated in hardware. As the keys are never stored usably in the working memory, attackers cannot access the key material - the isolated memory areas guarantee complete protection of cryptographic keys and data. The symmetric and asymmetric algorithms and additional functions are combined into corresponding "crypto blocks". In these crypto blocks, the basic algorithms ("crypto primitives") are combined in such a way that they can be used for industrial applications. In many cases, technologies such as PKI systems or certificates can be dispensed with without compromising security. It is also ensured in every case that all algorithms used comply with the BSI and internationally valid standards.
As specific know-how regarding cryptography is generally not widespread in industry, a short training period and cost-efficient integration with extensive detailed accompanying material must be possible even without prior knowledge. se.SAM therefore offers ready-made sample applications and flexible demo kits to make it easier to get started. The 19" or industrial appliance (se.SAM N series) provides cryptography services in the network and also has an optional key management and (IoT) PKI module. A PKCS#11 interface for Intel and ARM systems is optionally available for all modules.










