Security programs

The following describes several choices that are available for implementing security with a PC. I've mostly limited my discussion to PC programs although several of the programs also run on other platforms or similar ones are available. After struggling with my search and implementation I hope this helps yours. Topics covered are:

Secure Mail
FTP
Disk Encryption
Anonymous Mail
Secure Phones
File Wiping
Desktop Security

Locations for the products are specified on the next Page.
Many products are free for personal use or available for a trial period.
I've also posted the prices that I am aware of for reference although each product gives the license information. If anybody would like to add this to their web pages on security feel free to. If the following isn't clear send me mail and I'll update it. fmd@ultranet.com

To see additional comments proceed to Comments


Secure Mail

Secure E-Mail and PGP are two programs that provide secure encrypted Email.

Secure E-Mail by Elementrix provides a Transparent ediot proof means of sending encrypted data over the Internet. It uses a long key which is never transmitted and is constantly changing . The encryption module is integrated into the Pronto Lite mail program.

PGP allows a sender and a receiver to exchange mail or files in a secure manner. The information is sent encrypted intransit and only the receiver can decrypt the information. Once the message is encrypted the sender can't decrypt the information since two keys are used; one for encryption and one for decryption. Each user generates two keys and gives one of the keys to anyone that they decide to communicate with. PGP can also sign messages thus offering athenication. $0. There is a US version which is compatible with an international version. There are pointers for both versions and what the difference is.

PGP is a DOS program although there are windows and DOS shells.

Aegis allows performing most or all PGP functions from windows. It has its own edit window which interfaces with the clipboard and it can encrypt/decrypt files. $0 Its one of the better full function shells.

Scytale allows performing most PGP functions from windows on files or the clipboard. PGP functions can also be performed on several files at once. Files can also be draged into its window from program manger also. It also performs Steganography on PCX graphic files. $0.

For more information on Steganography go HERE

WPGP toolbar allows performing most or all PGP functions from windows. It has two features which make it easier to use. When a function is requested an icon is drug to the text in a window which selects all of the text, performs the function and puts the result in the window. It also simplifies replying to encryped mail. $35.

WinPGP allows performing PGP functions on files from windows and key maintence. $29.

PGPClick toolbar performs basic PGP functions on the clipboard data. Win 3.1, 95 $5

PGPn123 toolbar performs basic PGP functions on the clipboard data. Win 3.1 $15

PGP 4 Idiots is a PGP shell for DOS. Cost is $10.


Internet Mail

Eudora PGP will simplify decrypting incomming PGP mail messages if you are using the Eudora mail program. You might want to get a copy of Eudora Lite which is free just to use for decrypting mail. A PGP nemu item is added to the Eudora menu which allows you to decrypt the displayed message while in Eudora and leave the message in encrypted format for storage.

Peics Pro is Eudora PGP for Eudora V3

EPPI16 and EPPI32 for Win95 is a plugin for Eudora V3 which allows encrypting outgoing mail and decrypting incomming PGP mail messages.

PGP Encryptor Interface is a plug in for Pegagus that will encrypt or decrypt text in a window. $0.

PGPmailis a plugin for Eudora V3 and Netscape. Win 95, NT $150 new user, $30 for current PGP user.

Invicible Mail for Pegasus is plug in for Pegagus that will encrypt or decrypt, that is PGP compatible windows encryption interface ie; the encryption engine is included. Trial version is free, $50 for product. Win 3.x, 95, NT A hardware password token reading device is also available.

Private Idaho (PI) assists in encrypting messages for sending mail although its primary function is for sending anonymous mail to individuals or news groups. Messages can be encrypted with PI and then transfered to a different application such as your mail program. $0.

MailPGP is a simple user interface for PGP on Win95 that will encrypt or decrypt the clipboard. $0.

PGPn123 is a windows toolbar which will also work with mail programs. It can perform the PGP functions on open mail windows, the clipboard, or files. $15.

The shells that operate on the clipboard can also be used with the mail programs.

PGP Public Key Servers

Public key servers stores keys. Anybody can add their key for easy distribution and you can acquire software developers keys to verify the validity of files copied over the net.


FTP

Secure FTP by Elementrix provides a Transparent and easy means of sending encrypted data over the Internet. It uses a long key which is never transmitted and is constantly changing .


Disk Encryption

There are four forms of disk encryption:

File Encryption

SecuPC by RSA is a windows program which encrypts specificied files upon request or upon exiting windows. A menu is added to the file manager for on demand encryption/decryption of a file or whole directories. The original unencrypted file is wiped after the file is encrypted. A trial copy is available which has a 40 bit key and the full version lists for $129. Uses 128 b RC4 and RSA. Can create self extracting files with one of the two RSA keys. Win 3.1, 95, Mac

F-Secure is similar to RSA's SecuPC and it allows multiple users, each with different keys. It uses 256 bit Blowfish for encryption. $0 for individuals and $99 for comercial with more features. Win 3.1, 95

DataGuard is similar to the SecuPC. It uses IDEA or Seal for large files. Allows multiple users to access encryped files with their own password if they are in the same Class. 30 day trial version free. Win 95, NT

Point n Crypt encrypts files and folders in Win95. Lite version uses 40 b DES $20. Profesional version uses Blowfish or Triple DES $40.

Cryptext encrypts files from explorer in Win 95 or NT. Uses RC4 $0.

Enigma is a windows encryption program which will encrypt/decrypt files using the DES and tripple DES algorithm. After encryption the original file is left intact unless wiping is specified. Cost is $69.

Encrypted Disk Partitions

SFS encrypts a complete partition. DOS, Win 3.1

Secure Drive encrypts a complete partition. DOS, Win 3.1

BestCrypt creates encrypted files that simulates an encrypted partition. The file, called a container, can be copied to another system, NT, Unix, others and be operated on from a PC via the network. In addition the files in the container can be encrypted, I've tried F-Secure and DataGuard using a different encryuption algorthim with each tool. It can use Blowfish, DES, or GOST. DOS, Win 3.1, 95 Cost is $90 after 30 days.

Secure Device creates an encrypted file that simulates an encrypted partition.

Invincible Disk creates an encrypted file/virtual disk that simulates an encrypted partition. It also uses a physical key/token which stores encryption keys for enabling the virtual disk(s), their mail plug in program for Pegasus, or other applications thus not requiring you to carry a list of keys around. Win 3.1, 95, NT

Shade, an NT product, creates encrypted files that simulates an encrypted partition.

Encrypted Backup

HPACK will encrypt and compress files into one file using IDEA which can be used to backup encrypted partitions since backing up an encrypted partition would leave the files unencrypted on the backup media. Cost is $25. DOS

Puffer is a windows encryption program which will encrypt file(s) into ONE file using the blowfish algorithm. After encryption the original file(s) is left on the disk although a wipe option is available. Cost is $29 for greater than 40 bit encryption. Win 3.1, 95


Anonymous Mail

There are two primary ways to send anonymous mail.

The first is to send mail to a remailer that strips your address from the message and forwards it. There are also several online remailers which can be accessed over the Internet which don't require formating the mail message although you don't have the privacy that you would if you sent your message encrypted through multiple remailers. The receiver of the mail has no address to return mail to.

The second method is via a Nym server. This is more secure but requires more initial set up and also requires PGP. Private Idaho greatly simplifies the set up and sending of mail. Your outgoing mail is sent to the Nym server encrypted and the server will remove your sending address and attach your annonomous "handle" which the receiver of the mail can use to send mail back to you without knowing who you are. The Nym server will send the return message encrypted through the remailers that you specified during the initial set up. The Nym remailer and the other remailers don't know who your are since the return data and path is encrypted by each remailers unique key. There are several Nym servers that can be used and they are reliable and timley. The two main types are Alpha nyms and New nyms although most Alpha nyms have been replaced by the New nyms which are more secure.

Anonymous Posting to News Groups

There are two types of news gateways; those that scan headers and those that parse the address. They are discussed in the net pointers. For an example on how to perform an Anonymous Follow-up

Security News Groups

I've listed several relevant security news groups.


Secure Phones

Nautilus is a half duplex DOS encryption program for phone conversations. A 9600 baud modem, 386/25 and Soundblaster compatible sound card is requried. Triple DES, Blowfish, or Idea can be specified.

PGP Fones is half or full duplex encryption program for phone convrersations. A Win 95 beta package is available. Calls over the internet is also possible. A 66 MHz 486, 9600 baud modem, and Soundblaster compatible sound card is recommended. Blowfish or Triple DES can be specified.


File Wiping

There are several programs that overwrite the contents of a file instead of only changing the directory as delete does. This prevents reconstructing the file that was deleted.

Scorch will overwrite a file upon request and it will also overwrite a permant windows swap file. Win 3.1, 95

Wipe-File are several utilities that wipe files, permanentt swap files (Win 3.1, 95) and has a feature to wipe all free space in a file or a partition or at end of clusters.

Real Delete overwrites on every disk write without user request. Win 3.1

Delete and Shred overwrites a file upon request.

Washer will wipe all free space on a partition. $0 Win 3.1/95 Good user interface


Desktop Security

The following are three programs that I am aware of which can limit user access to files, DOS, and other items for multiple windows users in a friendly environment.

SpotLite ELS $50 after 30 day trial

Sentry $39

Win-Secure-It $29

To see the crypto pointers proceed to Pointers


My PGP Key

-----BEGIN PGP PUBLIC KEY BLOCK-----
Version: 2.6.2

mQCNAzF4dGYAAAEEALvSRMyOww9/CANlNqwipDIJN9VDNTTBsTeeH7rPfEbrZi2g
agmej5u2vSslqXdDPSRtzIYlxvk0jFUrwmOFh047RQYvMEe2JOc/OfS08ZtoHb5J
/kpiXkx1ec9a8X4AajFHrekzV4OEn54IY8Hwhp2jMGV+rqHEfDAPzEA7iw/9AAUR
tB1GcmVkIERvbGwgMTxmbWRAdWx0cmFuZXQuY29tPg==
=buyR
-----END PGP PUBLIC KEY BLOCK-----