PK Protect for IBM i

PK Protect for IBM i is the only data protection solution that applies persistent encryption to information on IBM i, securing data against unauthorized access no matter where it is stored or shared.

Schedule a Demo

Protect Against Internal and External Threats

IBM’s Power Systems remain an essential part of many organizations’ IT infrastructures, supporting hybrid cloud management, database management, ERP activities, and other foundational business functions. While native encryption provides some measure of protection for data while it resides within the Power System and IBM i environment, these solutions can leave security gaps when data is copied or moved to another system or location.
icon

Ongoing Protection

Our persistent encryption exploits the FIPS-140 validated PCIe Crypto Coprocessor, keeping data safe from theft or misuse even when it leaves the Power System.

icon

Public Key Infrastructure (PKI)

PK Protect for IBM i employs both OpenPGP and X.509 PKI, allowing for the use of the most trusted Public Key Infrastructures available today.

icon

Suite B Cryptographic Algorithms

Enable both SECRET and TOP SECRET classification to comply with National Institute of Standards and Technology requirements.

icon

Reduce PF-SRC, PF-DTA, SAVF, IFS *STRMF, IFS *DIR, and SPLF file sizes

Industry-leading compression technology reduces IBM i data by up to 95 percent before encrypting.

icon

Move Directly to Tape

With the 1Step2Tape feature, PK Protect for IBM i can create and read archive files directly to and from tape, eliminating the need to provide disk space for temporary archive files that must then be copied to tape.

icon

Reduce Save Operations

Execute multiple save operations with one compression and encryption run, making it unnecessary to run multiple individual save commands.

Smart
Encryption Key Access

Encryption keys can be stored in hardware security modules on Power Systems and are interoperable with third-party dedicated key management appliances. PK Protect also includes an automated interface for retrieving public keys from LDAP compliant directories, greatly increasing the ease of use of public keys for encryption in Power Systems processing.

Save/Restore
Application

The IBM i PKWARE Save/Restore Application (iPSRA) enables PK Protect to compress/encrypt IBM i SAVF files directly to a file in an archive, economizing on both time and disk space. This process is more powerful when integrated with existing Save and Restore APIs.

Streamline
and Automate Data Exchange

PK Protect for IBM i enables users to write directly to and read directly from UNIX, Linux, and Windows file systems. Data files intended for other ASCII-based operating systems are automatically translated from EBCDIC to ASCII languages sets, making data transfer faster and simpler.

Explore the PK Protect Suite

icon
Data discovery and protection solutions that locate and secure sensitive data
icon
Find data wherever it lives in the enterprise
Learn More
icon
Categorize data for tagging and reporting
Learn More
icon
Irreversible yet auditable protection
Learn More
icon
File encryption for both protection and analytics
Learn More
icon
Manage retention policies and fulfill DSAR
Learn More
Frequently Asked Questions
PK Protect supports FIPS 140-2, AES128, AES192, AES256, DES, 3DES, and RC4, CAST5 (CAST-128), and IDEA.
PK Protect for IBM i series runs on all IBM-supported levels of the IBM i operating system and Power Systems hardware.
Yes. As PowerHA increases in popularity, so do Independent Auxiliary Storage Pools (iASPs). PKWARE has been supporting iASPs since 2005.
Yes, files that have been processed by PK Protect for IBM i can be shared with PK Protect on any platform. PK Protect for IBM i, IBM z/OS, USS, IFS, Linux, AIX, Windows, Mac, and mobile are all compatible with one another and will properly address file formatting and translation of data as necessary.