R&S®Trusted Disk

Photo of a laptop running the R&S®Trusted Disk hard disk encryption solution, with the user interface visible on the screen

Full-disk encryption for protecting classified information

Processing classified information requires security products approved by the German Federal Office for Information Security. As a complete full-disk encryption solution for VS-NfD, EU Restricted, and NATO Restricted environments, R&S®Trusted Disk meets these security requirements while also providing clear and user-friendly management. R&S®Trusted Disk protects data on Windows endpoints and USB storage media against unauthorized access in the event of loss or theft as well as during maintenance and repair. In combination with the centralized R&S®Trusted Objects Manager management system with integrated PKI, it also significantly simplifies the management of users, permissions, security policies, and certificates.

Technical features

  • Encryption approved by the German Federal Office for Information Security for VS-NfD, EU Restricted and NATO Restricted
  • For Windows endpoints ranging from notebooks, tablets and desktop PCs to PCs permanently installed in operational vehicles
  • Encryption of the system drive and additional internal storage media with automatic re-encryption
  • Encryption of external USB storage media for data exchange within an organization
  • Secure pre-boot authentication using a smart card and PIN
  • Centralized management of endpoints, users, permissions and security policies
    • Integration with LDAP directory services, such as Active Directory
    • Integrated PKI for generating and managing the required certificates
    • Tamper-proof audit logging and integration with centralized monitoring systems via Syslog, SNMP and SMTP

Highlights

Centralized and efficient management

R&S®Trusted Objects Manager provides visibility and transparency into the security status of protected endpoints. This centralized management system enables consistent policies to be enforced across the organization and operational events to be monitored and traced.

Integrated public key infrastructure (PKI)

The required digital identities and certificates are provided directly within the R&S®Trusted Disk solution. This makes them easier to deploy and manage, while reducing dependencies and eliminating the need to set up a separate PKI.

Unique remote rights management

Access rights can be centrally granted or revoked without requiring the endpoint to be physically present at the administrator’s location. This enables a rapid response to personnel changes and security-relevant events, even for mobile or remotely deployed devices.

More Advantages

What sets R&S®Trusted Disk apart

  • Broad support for different hardware platforms: R&S®Trusted Disk can be used on a wide range of suitable Windows endpoints, enabling flexible integration into existing IT environments.
  • Development and support from Germany: The solution is developed entirely in Germany. Customers also benefit from direct manufacturer support and efficient communication.
  • Many years of security expertise: No security incidents involving the product have been reported since 2012, demonstrating its continuous maintenance and high security standards.
  • Part of Germany’s accelerated security certification program: R&S®Trusted Disk is being evaluated under the Accelerated Security Certification program of the German Federal Office for Information Security. The procedure provides a structured security evaluation with a predictable timeframe.

Scalable and seamlessly integrable

The management system offers various expansion options. Multi-tenancy allows multiple organizations to be managed separately.

The generation and management of additional certificate types for use on the same smart card are also supported:

  • IPsec for the approved VPN client solutions from Genua and NCP
  • OpenPGP for email and file encryption with GnuPG VS-Desktop
  • Document Signing for digitally signing PDF documents
  • S/MIME for digitally signing or encrypting emails
  • Windows Logon for more secure smart card-based Windows authentication

In addition, the system can manage Kobra VS storage media. As part of its support for Genua’s approved VPN client solution, it can also manage Genuscreen gateways and Genuconnect clients.


The complete hard-disk encryption solution approved for processing classified information (VS-NfD)

R&S®Trusted Disk + R&S®Trusted Objects Manager

Rohde & Schwarz Networks and Cybersecurity offers an end-to-end solution for protecting encrypted endpoints – from data encryption to centralized administration.

R&S®Trusted Disk

Protects classified information

Encrypts internal and external storage media on Windows endpoints and protects classified information against unauthorized access.

Role in the overall solution: Endpoint protection

R&S®Trusted Objects Manager

Manages and monitors the environment

Centrally manages endpoints, users, permissions, security policies, smart cards and certificates and supports operational monitoring of the managed systems.

Role in the overall solution: Centralized administration and operational monitoring


Downloads & Links

R&S®Trusted Disk

General information

These and other publications – such as brochures, checklists for more network security, or white papers on SIEM and DPI – can be found here at a glance:

R&S Networks and Cybersecurity publications

Your direct line to us

Most questions can be resolved best in direct contact: We look forward to answering your questions and requests by phone or via the contact form.

Inside Sales International Team
+49 (0)2405 49936 122

Feel free to write us