G&D StarKey 220
Giesecke & Devrient StarKey 200/StarSign Bundle Edition
StarKey 200 is bundled with StarSign software by A.E.T. (exactly the A.E.T. middleware is called SafeSign)
Hardware encryption
The StarKey200 token supports the following features:
Chip type: ST 19XT34 microcontroller
COS: i-COS v1.0 (GDBJ)
96Kbytes user ROM with partitioning
4Kbytes user RAM with partitioning
Personal data securely stored on the card chip
Pure 32Kbytes free EEPROM for customer applications
On-card RSA key generation up to 1024 bit key length
USB interface compatible 1.1 standard
FIPS140-2 compliant random number generator with two gun registers
Secret key operations: sign and decipher
Asymmetric authentication
Platform for digital signature applications
PKCS#11/CSP compatible
Secure messaging
DES, DES-3 and SHA-1 algorithms on board
The keys are secure because the essential algorithms are performed in hardware.
Hardware key pair generation
The RSA key pair is generated in the StarKey200 hardware. It takes about 4 seconds to generate a 1024 bit key pair. The big prime number used to generate keys is generated by a real random number generator on the chip.
Hardware random number generator
The StarKey200 token uses a real random number generator to create the key pair and Message Authentication Code (MAC).
Multi-level access
There are 16 security levels in the StarKey200 file system. The file system allows users to define one or more security rights for key management. Users can define complex security relationships according to their requirements.
Secure storage space
StarKey200 utilizes a processor that has in-chip storage for firmware and data. This design is very secure because data and low level instruction sets need never leave the token.
Feature with Middleware SafeSign
PKCS#11, PKCS#12, PKCS#15
CSP for Microsoft CryptoAPI
Microsoft Windows 2003/XP/2000 Logon
Secure eMail clients such as Microsoft Outlook Express or Microsoft Outlook (2003, XP, 2000 98), Baltimore MailSecure, Netscape Messenger, Novell Groupwise 6
Secure eMail plug-ins for SSE, Baltimore, Lotus Notes from Utimaco, Secude,
SSL authentication of browsers such as MS Internet Explorer, Firefox, Netscape Navigator
Baltimore PKI, Entrust PKI, RSA Keon PKI, VeriSign PKI or GlobalSign PKI application support via PKCS#11 or MS CryptoAPI
VPN clients from Microsoft, NCP, Cisco, Checkpoint
SSH Secure Shell clients
Celo eSigner, Lotus Notes Rnext, PGP, RSA SecurID
Driver
Windows 98/ME/2000/XP/2003
Others in development
StarKey200 Technological Specifications
Supported Operating Systems Windows 98/ME/2000/XP/2003;
Dimensions 50 x 17 x 7 mm (1.97 x 0.67 x 0.28 inches)
Weight 5.0g
Power Dissipation < 250 mW
Operating Temperature 0.0 C ~ 70.0 C (32.0 F to 156.0 F)
Storage Temperature -40.0 C ~ 85.0 C (-40.0 F to 185.0 F)
Humidity Rating 0 to 100% without condensation
Connector Type USB type A
Casing Hard Molded Plastic, Tamper Evident
RSA 1,024 bits key generation 4 s
RSA 1,024 bits signature 180 ms
RSA 1,024 bits verification 60 ms
Triple DES 31 us
Single DES 19 us
Memory Data Retention >= 10 years
Memory Cell Rewrites >= 100,000 times