Data Diode Technology- Secure one way transfer of data

What is a data diode?

A data diode is hardware device that is often called a "unidirectional security gateway". It is placed between two networks with different levels of security and controls the flow of information in a safe, one-way transfer of data between segmented networks.

In terms of security, network data flowing through data diodes makes it impossible for an insecure or hostile network to imbibe malware or access the system.

Data diodes allows data processing in real time to information management systems protecting valuable information and network infrastructure from theft, destruction, tampering, and human error, mitigating potential loss of thousands of dollars and countless hours of work.

Data diode design maintains physical and electrical separation of source and destination networks, establishing a non-routable, completely closed one-way data transfer between networks eliminating external points of entry to the sending system, preventing intruders and contagious elements from infiltrating the network.

Being hardware and not software based, means it can’t be attacked by malicious code and intrusion is thereby prevented. A data diode allows you to transfer the data without putting the security of the network at risk.

How does it work?

An optical fiber with a sender on one side and a receiver on the other ensures that data can only be transferred in a forward direction, and never in reverse preventing leakage and manipulation from taking place.

High to low security flow:

If a data diode is directed out from the high security network towards a network with a lower security level, data can be transferred while the network stays protected.

This makes sure no one can use the same connection in the opposite direction to reach the secure network and manipulate its environment.

Low to high-security flow:

A data diode can also be directed in towards the secure network. A data diode will ensure the confidentiality of the network by preventing any form of leakage from happening.



A data diode also creates a physical barrier or “air gap” between the two points.

Proxies in the network interface allow two-way communication to continue seamlessly with each side of the data diode, with a one-way link in between. In addition, this configuration can conceal all source network information by terminating the protocol and resuming it on the destination side of the data diode.


Image source and reference: https://owlcyberdefense.com/blog/what-is-data-diode-technology-how-does-it-work/       

Comments

  1. Nice article, this is very informative and interesting, please do visit my website for Blogs and Articles On Education and IT Courses Folks IT

    ReplyDelete

Post a Comment

Popular posts from this blog

Arbitrary file upload and RCE in Wonder CMS - CVE-2017-14521

Cross Site Request Forgery- Intex Router N-150 | CVE-2018-12529

Stored XSS in Wonder CMS- CVE-2017-14522