server

SecureZIP Server — Features & Benefits

SecureZIP Standard Enterprise
  • Application Integration
    • Stream data directly to/from applications without staging data to disk.
       
check check
  • Encryption via passphrases and/or PKI
    • SecureZIP® complements environments using PKI and those that don't by enabling encryption and decryption via passphrases, public key/private key pairs, or both at the same time, depending on the requirements of each intended recipient. SecureZIP supports X.509 RSA v3 certificates and OpenPGP keys.
       
check check
  • Digital signatures and time-stamping to verify documents have not been altered
    • SecureZIP enables users to sign files with their unique digital certificates. Recipients of signed files can validate the signature to ensure the sender is who they claim to be and verify that the document has not been altered or tampered with since signing. In addition, digital signatures offer non-repudiationthe signer cannot later claim that the signature is invalid.
       
check check
  • Contingency key access to protected files
    • SecureZIP's contingency key provides administrative capabilities to ensure that anything secured will be accessible in the event of an audit or for data recovery purposes.
       
check check
  • File name encryption
    • File name encryption masks file name, file size, and other information to further protect data if it is intercepted in transit or improperly accessed.
       
check check
  • Error reporting for both attended and unattended operations
    • Windows: SecureZIP reports errors either to the standard Windows® Event Log, or through SNMP (Simplified Network Message Protocol) integration with leading data center management applications.

      UNIX: SecureZIP reports errors either to the standard Syslog, or through SNMP (Simplified Network Message Protocol) integration with leading data center management applications.
       
check check
  • Email (SMTP) integration
    • Distribution of encrypted files to end-users simply requires adding a switch and the destination email addresses for the recipients, saving processing time and development effort either inside or outside the enterprise.
       
check check
  • FTP integration
    • FTP integration enables automated delivery of files.
       
check check
  • Support for smart cards and smart tokens (Windows® only)
    • SecureZIP's support for smart cards and smart tokens enables security professionals to apply an added layer of data protection by storing the user's private decryption key on a small portable device. Smart cards and smart tokens also enable two-factor authentication, requiring the user to present two credentials before he can access protected data - something known and in the user's possession, such as a password and a private key stored on a portable device.
       
no check
  • Automatic file wiping
    • SecureZIP can be configured to overwrite deleted files - up to seven times in accordance with NSA specifications - to ensure deleted information cannot later be recovered.
       
check check
  • Automatic access to public keys in directories
    • SecureZIP offers an optional interface that integrates with Lightweight Directory Access Protocol (LDAP) compliant directories, such as Sun® iPlanet, Novell NetWare®, OpenPGP key rings, and Microsoft Active Directory®. LDAP integration makes it easy to locate, retrieve, and apply the public keys for certificate-based encryption and decryption.
       
check check
Note: SecureZIP (PKZIP) Server for Windows is available in Enterprise Edition only. All the enterprise features listed here are included with the product.
SecureZIP for Server
Products » SecureZIP » Desktop
security
SecureZIP Server

Server Data Encryption Software

Files that contain sensitive data, whether stored or being transmitted, need to be protected. SecureZIP® server data encryption software makes securing these files an effortless task. SecureZIP is the industry-leading security and compression utility that greatly reduces transmission times and required storage space while securely protecting data, in transit and at rest. The additional benefit of cross-platform compatibility makes it the ideal solution for exchanging data within the enterprise.


Access encrypted files for audit and recovery purposes with contingency key*Files that have been encrypted must remain accessible to the organization. When files have been encrypted with PKI and/or passphrases, SecureZIP’s contingency key capabilities ensure that encrypted data is accessible for audit or data recovery purposes.

Exchange data securely across desktop, server, midrange, and mainframe systemsSecureZIP server data encryption software is available on all major platforms and supports secure data exchange between Windows® desktops, UNIX®/Linux® and Windows servers, i5/OS midrange, and z/OS mainframe operating systems. SecureZIP automatically converts data to the appropriate format based on the type of system it is being transferred to.

PKWARE is the only single-source vendor for data compression and security products across all major enterprise operating systems.

Encrypt data using passphrases, PKI, or bothSecureZIP supports both passphrase- and PKI-based methods of encryption, offering flexible security that meets varying requirements within business environments. In comparison to passphrases, digital certificates offer higher levels of security, are easier to use, and allow secure communication with larger numbers of recipients. Passphrases provide an alternative when the intended recipient does not have a digital certificate.

Automatically distribute files from server to desktopBy creating self-extracting files (PKSFX®), encrypted and compressed archives sent from servers are automatically decrypted and decompressed onto desktops. This process is simple for desktop users, requiring just a few clicks, allowing for quick and easy transfer of files to desktop systems. Note: PKSFX is licensed for internal use only.

Process encrypted data without staging decrypted data to diskSecureZIP with Application Integration decrypts data and streams it directly to the application without staging it to disk. After the application completes processing, it can then stream the data to SecureZIP for encryption – once again, unprotected data is never staged to disk.

Verify documents have not been altered by using digital signaturesSecureZIP enables users to sign files with their unique digital certificates. Recipients of signed files can validate the signature to ensure the sender is who they claim to be and verify that the document has not been altered or tampered with since signing. In addition, digital signatures offer non-repudiation - the signer cannot later claim that the signature is invalid.

Apply added data protection by using smart cards, smart tokens, and timestampingSecureZIP's support for smart cards and smart tokens (available for Windows server) enables security professionals to apply an added layer of data protection by storing the user’s private decryption key on a small portable device. Smart cards and smart tokens also enable two-factor authentication, requiring the user to present two credentials before they can access protected data, such as a passphrase and a private key stored on a portable device.

About PKWAREPKWARE, Inc., the creator and continuing innovator of the ZIP standard, is a global market and technology leader providing data-centric, cross-platform data security and compression software. The SecureZIP & PKZIP product families are used by over 30,000 corporate entities and over 200 government agencies to ensure data security, portability, and cross-platform computing exchange - both internally and externally with partners. Organizations in financial services, banking, retail, healthcare, government, and manufacturing use PKWARE products daily for their unmatched scalability, ease of use, and rapid deployment. PKWARE, a privately held company, is based in Milwaukee, WI with additional offices in New York and the United Kingdom.

SecureZIP for Server
Windows Solaris IBM-AIX HP-UX Linux
  • Note: SecureZIP Server for Windows is only available in Enterprise Edition.
  • Windows 2003 and higher with IE 6.0 or above
  • 256 MB RAM (512 MB recommended)
  • 15 MB available disk space
  • Enterprise Edition: Microsoft Management Console v2.0 running on Windows Server 2003 or later
  • Solaris 8 or greater on UltraSPARC
  • Solaris 10 or greater on x86
  • 64 MB RAM (128 MB recommended)
  • 20 MB available disk space
  • Enterprise Edition: Microsoft Management Console v2.0 running on Windows Server 2003 or later
  • 5L Version 5.3 (5300-08) or higher
  • 6L Version 6.1 (6100-00) or higher
  • 7L Version 7.1 (7100-00) or higher
  • Required xlC packages: xlC.aix50.rte 11.1.0.2 or later, xlC.rte 11.1.0.2 or later
  • 64 MB of RAM (128 MB recommended)
  • 28 MB available disk space
  • Enterprise Edition: Microsoft Management Console v2.0 running on Windows Server 2003 or later
  • Itanium processor only
  • 11iv2 or higher with patches: PHSS_39821, PHSS_39897 and PHSS_40537, PHSS_41184
  • 11iv3 or higher with patches: PHCO_41039, PHSS_39822 and PHSS_40538, PHSS_41183, and PHSS_41185
  • For all HP-UX versions, please install the patches prior to installing PKZIP
  • 64 MB of RAM (128 MB recommended)
  • 40 MB available disk space
  • Enterprise Edition: Microsoft Management Console v2.0 running on Windows Server 2003 or later
  • RedHat 4 and greater
  • SuSE 9 and greater on x86, x86_64, s390, or s390x
  • Ubuntu 10.04 (LTS) and greater on x86 and x86_64
  • x86_64 requires the 32-bit compatibility libraries for that Linux distribution.
  • 64 MB of RAM (128 MB recommended)
  • 20 MB available disk space
  • Enterprise Edition: Microsoft Management Console v2.0 running on Windows Server 2003 or later
  • Features and Benefits
  • Conserve storage space and reduce file transfer time
  • Process encrypted data without staging decrypted data to disk
  • Access encrypted files for audit and recovery purposes with contingency key*
  • Encrypt data using passphrases, PKI, or both
  • Apply added data protection by using smart cards and smart tokens (available on Windows server only)
  • Automatically distribute files from server to desktop
  • Verify documents have not been altered by using digital signatures
  • Operates on all major computing platforms, allowing seamless data transfer between operating systems, including z/OS®, i5/OS®, UNIX®/Linux® server, and Windows® server and desktop
  • *Feature included with SecureZIP for Server Enterprise Edition


Technical Specifications — SecureZIP® Server

For Windows Servers
Encryption Methods Strong Password Encryption
X.509 Public Key Encryption
Mixed Password and Public Key
Traditional ZIP Password Encryption
OpenPGP (RFC 4880)
PKI Digital Certificates x.509 v3
Certificate and Key Formats Supported PEM, PKCS#12, PKCS#7
FIPS 140 Mode Yes (ZIP encryption only)
Key Stores Supported Local Certificate Store or LDAP Directory, SmartCard/Token, OpenPGP Key Rings
Contingency Key Yes
Digital Signature Yes
Digital Authentication Yes
Encryption Algorithms AES (256, 192 and 128 bit keys), 3DES (168 bit key), Cast5 (128-bit), IDEA
Decryption AlgorithmsAES (256, 192 and 128 bit keys)
3DES (112 and 168 bit keys)*
DES*
RC2 (40, 64 and 128 bit keys)
RC4 (40, 64 and 128 bit keys)
Traditional ZIP Password Decryption
Cast5 (128-bit)
IDEA
Hash Algorithms SHA-1*, SHA-256, SHA-384, SHA-512
MD5
Public Key AlgorithmsRSA (1024, 2048 and 4096 bits)
Authentication X.509 Digital Signatures, OpenPGP Key Validation
Maximum passphrase/password length260 characters
Minimum passphrase/password lengthDefaults to 8, configurable
Compression Algorithms Deflate, Deflate64™, BZIP2, DCL Implode, LZMA, PPMd, Store (no compression)
Number of Compression levels10
Extended ZIP file format supportZIP64™
Compress files > 4GB
Archive > 65535 files per ZIP file
Create PKSFX® Self-Extracting Files Yes
Supported File Creation types ZIP, BZIP2, TAR, GZIP, Uuencode, XXencode, TAR BZIP2, TAR GZIP, OpenPGP
Supported File Extraction types ZIP, RAR, TAR, GZIP, BZIP2, ARJ, BinHex(hqx), CAB, LZH, Uuencode, XXencode, .Z, .ZIPX, TAR BZIP2, TAR GZIP, .7z, .iso, OpenPGP
Operating System Requirements Windows 2012 Server
Windows 2008 Server R2
Windows 2008 Server
Windows 2003 Server
Memory Requirements256 MB RAM (512 MB recommended)
Disk Requirements 15 MB available disk space on 32-bit Operating Systems
*When operating in FIPS 140-2 Mode, these features cannot be enabled as of v12.5
For UNIX/Linux Servers
Encryption Methods Strong Password Encryption
X.509 Public Key Encryption
Mixed Password and Public Key
Traditional ZIP Password Encryption
OpenPGP (RFC 4880)
FIPS 140 Yes (ZIP encryption only)
PKI Digital Certificates x.509
Certificate and Key Formats Supported PEM, PKCS#12, PKCS#7
Key Stores Supported Local Certificate Store or LDAP Directory, OpenPGP Key Rings
Contingency Key Yes
Digital Signature Yes
Digital Authentication Yes
Encryption Algorithms AES (256, 192 and 128 bit keys), 3DES (168 bit key), Cast5 (128-bit), IDEA
Decryption Algorithms AES (256, 192 and 128 bit keys)
3DES (112 and 168 bit keys)*
DES*
RC2 (40, 64 and 128 bit keys)
RC4 (40, 64 and 128 bit keys)
Traditional ZIP Password Decryption
Cast5 (128-bit)
IDEA
Hash Algorithms SHA-1*, SHA-256, SHA-384
SHA-512MD5
Public Key AlgorithmsRSA (1024, 2048 and 4096 bits)
Authentication X.509 Digital Signatures, OpenPGP Key Validation
Maximum passphrase/password length260 characters
Minimum passphrase/password lengthDefaults to 8, configurable
Compression Algorithms Deflate, Deflate64™, BZIP2, DCL Implode, LZMA, PPMd, Store (no compression)
Number of Compression levels10
Extended ZIP file format supportZIP64™
Compress files > 4GB
Archive > 65535 files per ZIP file
Create PKSFX® Self-Extracting Files Yes
Supported File Creation types ZIP, BZIP2, TAR, GZIP, Uuencode, XXencode, TAR BZIP2, TAR GZIP, OpenPGP
Supported File Extraction types ZIP, TAR, GZIP, BZIP2, ARJ, BinHex(hqx), LZH, Uuencode, XXEncode, .Z, .ZIPX, TAR BZIP2, TAR GZIP, .7z, .iso, OpenPGP
Operating System Requirements Solaris 8 or greater on UltraSPARC
Solaris 10 or greater on x86
IBM AIX
  • 5L Version 5.3 (5300-08) or higher
  • 6L Version 6.1 (6100-00) or higher
  • 7L Version 7.1 (7100-00) or higher
HP-UX (Itanium only)
  • 11iv2 or higher with patches: PHSS_39821, PHSS_39897 and PHSS_40537, PHSS_41184
  • 11iv3 or higher with patches: PHCO_41039, PHSS_39822 and PHSS_40538, PHSS_41183, and PHSS_41185
Linux
  • RedHat 4 and greater
  • SuSE 9 and greater on x86, x86_64
  • Ubuntu 10.04 (LTS) and greater on x86 and x86_64
  • x86_64 requires the 32-bit compatibility libraries for that Linux distribution.
Memory Requirements64 MB (128 MB Recommended)
*When operating in FIPS 140-2 Mode, these features cannot be enabled as of v12.5