228
Security (1)
• ANW2 uses MEDLEY and BATON TEKs for data
encryption
• Firefly vectors using IKE (Internet Key Exchange) can
also be used for data encryption
The AN/PRC-117G uses High Assurance Internet Protocol Encryption (HAIPE)
compatible Type 1 IP security. MEDLEY TEKs are used for IP data encryption
and BATON is for use with legacy HAIPE system. MEDLEY and BATON
COMSEC are loaded using DS101 transfer protocol. When programming the
ANW2 network, a HAIPE TEK storage position is assigned to a month
underneath a Key Chain. The TEKs are good for one month and are
automatically zeroized. There are 10 Key Chains and 12 TEK positions per
Chain. Therefore, the AN/PRC-117G can store up to 120 HAIPE TEKs.
(TEK001 – TEK120)
The radio can also store up to 4 Firefly vectors and are good for one year. Firefly
vectors are not TEKs but instructions to create a dynamic key using Internet Key
Exchange (IKE). IKE is a six message exchange between two radios, using the
Firefly vector to create the dynamic key also called an MTEK (Main Traffic
Encryption Key). The key is dynamic because a new MTEK is created every time
the radios communicate. One firefly vector cannot be loaded into all radios. A
different or unique Firefly vector must be loaded in each radio.