Skip to content

Encryption over 10G DWDM Wavelength

PacketLight Corporate Video

Watch - 5 Steps to DWDM

Packetlight’s PL-1000TE-Crypto is a multi-rate, multi-service high density wavelength division multiplexing (DWDM) transponder, supporting innovative cryptographic capability for GbE, 10GbE, and 40GbE data, and 4G/8G/10G/16G FC storage services. The PL-1000TE-Crypto provides added security benefit to any DWDM link by encrypting the data transmitting between the sites.

PL-1000TE-Crypto Layer-1 DWDM Encryption

Up to 80G Layer-1 encryption

PacketLight’s comprehensive encryption solution assures three major concerns in optical link security:

  • Confidentiality - preventing disclosure of information to unauthorized parties
  • Data integrity - ensuring that the message has not been altered
  • Authentication - validating that both parties involved are who they claim to be

Please contact us for a quote or further assistance.

Download PL-1000TE datasheet

Built-in Layer-1 encryption
Supports GCM-AES-256 hardware-based encryption capability per transponder, providing full throughput without degradation to the service performance.

Flexible Design

On the data level, the PL-1000TE-Crypto performs Layer-1 GCM-AES-256 encryption on the full bandwidth. The encryption provides end-to-end transparency of data and clock, with a low latency of less than 12usec for 10GbE.

Powerful Feature Set

On the management level, the PL-1000TE Crypto supports the secured management protocols HTTPS, SSH, SNMPv3 and RADIUS, based on user password and firewall. The PL-1000TE Crypto also detects degradation in the fiber link performance for automatically detecting possible tapping attempts.

PL-1000TE Crypto Diagram

PL-1000TE Crypto Layer-1 DWDM Encryption Diagram

Please contact us for a quote or further assistance.

  • 8 encrypted transponders in a 1U chassis
  • Supports the following client service types:
    • Data: GbE, 10GbE, and 40GbE
    • Storage: 4G/8G/10G/16G Fibre Channel
  • High-end encryption core:
    • GCM-AES-256 Layer-1 data encryption
    • Periodic Diffie-Hellman key exchange, configurable to a minimum of 1 minute
    • NIST FIPS-140-2 Level 2 compliant
    • Common Criteria EAL2 certified
    • Complies with CNSA Top Secret Suite B 2015
  • Uses pluggable SFP/SFP+ optics for both service and uplinks
  • Supports full C-band tunable DWDM on the line side (SFP/SFP+)
  • Optional integrated EDFAs, mux/demux and optical switch modules
  • Bi-directional performance monitoring
  • Supports single and dual fiber
  • Dual AC/DC pluggable power supply and pluggable fan unit
  • Secured remote data center connectivity for government and financial institutions
  • Cloud providers and ISP secured fiber network infrastructure
  • Feeder of encryption services to OTN
  • Managed encrypted wavelength services offered by service providers
  • Secured connectivity for internal data center
  • Affordable 80G multi-rate transponder solution
  • Supports encryption over fiber
  • Bit-transparent without any reduction of throughput
  • Complete DWDM optical layer solution
  • Low latency
  • Easy to operate, with a user-friendly management interface
  • Secured solution ensuring data integrity, confidentiality and authentication
  • Real-time alerts and notifications about fiber degradation
  • Encrypted access to management console and secured transport of maintenance data
Note: For specific countries, models that include Layer-1 GCM-AES-256 based encryption will be marked with the suffix C.