229
Security (2)
• A separate MEDLEY key is used for Voice encryption
• Transmission Security Keys (TSKs) are used to
encrypt the transmission path
• Time Of Day (TOD) window is 5 minutes
Voice is also encrypted using MEDLEY TEKs. Voice TEKs and HAIPE KEYs are
different and must be loaded separately. ANW2 will not work without a Voice
TEK loaded. Voice will work even if IP and HAIPE are not configured. At a
minimum a frequency, the TRANSEC, and a voice TEK are required to get and
ANW2 network operational.
HAIPE encrypts the data at the network layer. Maintenance messages and the
non-encrypted portion of the IP packets is encrypted by the Transmission
Security Keys (TSKs) at the physical layer. The TSKs are Advanced Encryption
Standard (AES) generated by the Communications Planning Application (CPA)
and are part of the mission plan. A TRANSEC Offset can also be programmed in
the CPA for from the front panel. The TKS changes based on the Time-Of-Day.
The TOD is programmed in month:day:year and the time in 24 hour clock. All
radios in the network must be within 5 minutes of each other.