UPDATED 08:00 EDT / OCTOBER 31 2017

INFRA

Yubico debuts a thumbnail-sized encryption module for data centers

Yubico AB is best known as a maker of USB security keys that help users verify their identities when logging into important applications, but its business focus isn’t limited to personal authentication alone. The Swedish company also offers an encryption module for data centers that received a major refresh this morning.

Yubico has unveiled a new iteration of the product, the YubiHSM 2 (pictured), that promises to help companies securely store the cryptographic keys they use to encrypt their data. The module, which retails for $650, is compact enough to fit inside a USB port on a server chassis. That’s a far cry from the traditional hardware security modules normally used to handle ciphers, which are closer in size to a mobile motherboard.

Despite the compact form factor, however, the YubiHSM 2 packs an extensive feature set. Yubico says that it can not only store cryptographic keys but also generate new ones and carry out the security operations for which they’re used. The fact that this is all done directly on the device allows ciphers to be isolated from the applications using them to a large degree, which in turn makes it more difficult for would-be hackers to steal them.

For added measure, the YubiHSM 2 only shares interacts with workloads via mutually authenticated connections. And all activity is recorded on the device in the form of a hash chain, a data management scheme similar to a blockchain. Each event log contains a snapshot of the preceding one that makes it relatively easy to check if the entry has been tampered with.

Topping off the feature set are administrative capabilities designed to make it easier for companies to incorporate the YubiHSM 2 into their infrastructure. A remote management tool lets operations personnel centrally configure multiple modules, while access controls provide the ability to restrict how applications use keys.

Yubico has equipped the YubiHSM 2 with support for several popular cryptography schemes to accommodate different use cases. Companies can employ the module to secure sensitive applications such as databases and user directories, as well as sign the code written by their developers to verify that it hasn’t been corrupted prior to release.

Image: Yubico

A message from John Furrier, co-founder of SiliconANGLE:

Support our open free content by sharing and engaging with our content and community.

Join theCUBE Alumni Trust Network

Where Technology Leaders Connect, Share Intelligence & Create Opportunities

11.4k+  
CUBE Alumni Network
C-level and Technical
Domain Experts
15M+ 
theCUBE
Viewers
Connect with 11,413+ industry leaders from our network of tech and business leaders forming a unique trusted network effect.

SiliconANGLE Media is a recognized leader in digital media innovation serving innovative audiences and brands, bringing together cutting-edge technology, influential content, strategic insights and real-time audience engagement. As the parent company of SiliconANGLE, theCUBE Network, theCUBE Research, CUBE365, theCUBE AI and theCUBE SuperStudios — such as those established in Silicon Valley and the New York Stock Exchange (NYSE) — SiliconANGLE Media operates at the intersection of media, technology, and AI. .

Founded by tech visionaries John Furrier and Dave Vellante, SiliconANGLE Media has built a powerful ecosystem of industry-leading digital media brands, with a reach of 15+ million elite tech professionals. The company’s new, proprietary theCUBE AI Video cloud is breaking ground in audience interaction, leveraging theCUBEai.com neural network to help technology companies make data-driven decisions and stay at the forefront of industry conversations.