360
330                                                                                        30
GSMK CryptoPhone 600G                                       ®
Secure mobile phone for professional users
with 360° protection, hardened operating system,
Baseband Firewall, tamper-resistant hardware and
                                                                      300
                                                                                                                                                   N
end-to-end voice and message encryption
Secure Calls
Secure end-to-end encrypted voice over IP calls on
any network – 2G, 3G, 4G, WLAN • Strongest and
most secure algorithms available today – AES256 and
Twofish • 4096 bit Diffie-Hellman key exchange
                                                                                              W                                                                                                     E
with SHA-256 hash function • Readout-hash based
key authentication • Autonomous key generation, no         270
pre-installed key material • Encryption keys securely
and immediately erased from the device after each call
Secure Messaging
Based on the same strong encryption algorithms
used for GSMK CryptoPhone voice encryption –
4096 bit Diffie-Hellman initial key exchange, AES256
and Twofish message encryption with 256 bit keys                        240
Device Protection
Hardened operating system with secure boot and
device runtime integrity checks
                                                                                                                                                     S
Secure Android OS built from source code with
granular security management and streamlined,
security-optimized components and communication
                                                                                                     210
                                                                                                     Dedicated hardware security modules with CPU 150
                                                                                                     Tamper-resistant, tamper-evident hardware design
stacks • Seamless secure boot chain featuring secure
boot, kernel, recovery, kernel object and APK                                                                                 180
                                                                                                     supervisor, watchdog timer, on-chip temperature
                                                                                                     sensor and removal-resistant coating • Shield removal
signature keys • Runtime checks of core applications                                                   detection circuitry and Environmental Failure
and services ensure that only signed and trusted code                                                  Protection (EFP) for temperature, voltage, internal
is loaded on the device                                                                                clock frequency, and duty cycle provided by immediate
                                                                                                       reset circuitry • Supports the highest FIPS 140-2 and
Configurable OS security profiles                                                                      Common Criteria security level requirements
Hardware module controller and permission
enforcement module control access to network, data
and sensors (camera, microphone, etc.), keeping you                                                         360˚ Security: End-to-end encrypted voice
in control of your individual security policies                                                             and messaging on a fully armored platform
Baseband Firewall 2.0                                                                                       •     High Assurance CryptoPhone Security
Unique protection against over-the-air attacks with                                                         •     IP67 water and dust protection
constant monitoring of baseband processor activity •                                                        •     MIL-STD-810G shock resistant
Baseband attack detection and initiation of counter-                                                        •     Glove-usable touch screen
measures • Automatic discovery of IMSI Catchers and                                                         •     Extremely durable mechanical design
rogue base stations • Detection of attempts to track                                                        •     Full source code available for review
user location via SS7 or silent SMS                                                                         •     Hardened Android OS
                                                                                                            •     Emergency erase function
                                                                                                            •     Made in Germany
The product names and logos mentioned in this document are trademarks or registered trademarks of their respective owners. CryptoPhone ist a registered trademark of GSMK.• © GSMK • Ver.1.2
     Trusted Platform Module (TPM) for platform                                                            Technical Data
     measurement and attestation                                                                           Quad–core Krait CPU 2.3GHz, graphics accelerator,
     Trusted Computing Group (TCG) TPM specifications                                                      QDSP, microSD card slot
     level 2 version 1.2, revision 116 • Active shield and
     environmental sensors • Memory Protection Unit                                                        Radio
     (MPU) • Hardware and software protection against                                                      GSM/GPRS/EDGE (850/900/1800/1900 MHz),
     fault injection                                                                                       UMTS/HSDPA+ (B1, B2, B4, B5, B8), LTE advanced
                                                                                                           (3GPP, FDD, IMS, VoLTE, Carrier Aggregation, B2, B3,
     Encrypted Storage                                                                                     B4 , B5, B7, B13, B14, B17, B20)
    60
     Encrypted storage system for contacts, messages,
     and notes with smart folders protects data at rest                                                    Connectivity
     against unauthorized access                                                                           USB 3.0 (fast charging), Wi-Fi 802.11 a/b/g/n/ac,
                                                                                                           accessory interface for connecting custom extension
     Verifiable Source Code                                                                                modules, such as sensor accessories, TETRA or tactical
     GSMK CryptoPhones are the only secure mobile                                                          radio modules, docking station, car charger and
     phones on the market with source code available for                                                   satellite modules
     independent security assessments. This permits
E        90
     individual source code audits in accordance with
     national and international verification and certification
     standards designed to verify device integrity
                                                                                                           Audio
                                                                                                           High-performance speakers, multi-microphone ANC
     mechanisms, correct implementation of all encryption                                                  Display
     algorithms, and the absence of backdoors                                                              5" Full HD (1080*1920) LCD, Glove-usable capacitive
                                                                                                           touch, functional in wet conditions
     Compatibility
     Fully compatible with all GSMK CryptoPhone IP                                                         Camera
     secure mobile, desktop and satellite phones, including                                                8 MP with Autofocus and LED Flash, 2 MP for front
    120
     all GSMK CryptoPhone 400, 450, 500/500i and IP19                                                      facing applications, Full HD video capture and
     series secure phones as well as GSMK CryptoPhone IP                                                   playback, both cameras can be disabled
     PBX Gateways
                                                                                                           Mechanical
                                                                                                           Dimensions 141mm x 75,5mm x 13,5mm, Weight
                                                                                                           180g, IP67 rating, MIL-STD-810G shock resistant
0    Encryption Overview
                                                                                                           Temperature range -20°C to +55°C (-4°F to 131°F)
                                                                           value II 0x02           SHA-256             256 bit key
       Diffie - Hellman              4096bit           SHA-256             value II 0x01           SHA-256             256 bit key              Twofish
                                                                                                                                                                  Counter
                                                                                                                                                                  128 bit
                                                                           value II 0x00           SHA-256              256 bit key            AES-256
                                                                                                                                                                               XOR
     Your local distributor
                                                                                                                                                                            keystream
                                                                                                                                 Voice Data
                                                                                                                                 from Codec
                                                                                                                                                                               XOR
                                                                                                                                                           MUX
                                                                                                                                 User Data
                                                                                                                                 Messages
                                                                                                                                                                       Encrypted Data
     GSMK - Gesellschaft für Sichere Mobile Kommunikation mbH                                              Phone +49 30 24 62500-0                           Web        www.cryptophone.com
     Marienstrasse 11, 10117 Berlin, Germany                                                               Fax   +49 30 24 62 500-1                          Email      sales@cryptophone.de
     The product names and logos mentioned in this document are trademarks or registered trademarks of their respective owners. CryptoPhone ist a registered trademark of GSMK.• © GSMK • Ver.1.2