Simple and secure access to the corporate network
The ECOS SecureBootStick CL
The ECOS SecureBootStick® CL enables highly secure VPN access to Citrix Virtual Apps + Desktops, Microsoft Terminal Server (RDSH), VMware Horizon, or web applications – all from a protected remote access environment.
For home workstations or BYOD scenarios, it ensures complete separation between business and private use of the PC. The specially hardened ECOS Secure Linux operating system boots the PC, leaving the local Windows system untouched. Any viruses or malware on the computer remain inactive, ensuring a fully secure environment.
How the Secure Boot Stick CL works
The internal hard disk remains switched off, so any malware on the computer is never activated. All firmware and applications reside on the SBS CL, enabling the secure use of private or third-party devices.
This allows highly secure home office work to be implemented quickly, cost-effectively, and efficiently.
- RDP client, Citrix Workspace app (previously Citrix Receiver), VMware Horizon via RDP, PCoIP, BLAST, Firefox, Chromium, VPN client for IPsec
- Citrix HDX RealTime Media Engine to optimize audio and video transmission for Skype for Business and Microsoft Teams
- Microsoft RemoteFX for optimizing audio quality in conjunction with RDP
- Profiles for accessing various applications/servers at user, group or role level
- Use of local resources after approval (external USB storage devices, local printers)
- Authorization assignment for external devices linked to manufacturer ID or serial number of the device
- Remote update of all applications and firmware
- Compatible with all common 64-bit PCs, largely with Intel-based Macs and tablets with x86 architecture
- UEFI Secure Boot support
- Keyboard drivers for more than 90 languages and countries
- Multi-monitor support
- Connection via LAN, WLAN, UMTS, LTE incl. browser for logging into the HotSpot
- Software in German and English (can be preset)
- Write-protected and signed partitions for boot loader and kernel
- Encryption via hardware of all security-relevant partitions
- Write-protected and signed partition for firmware and applications
- Writable partition for storing user parameters
- Hardened ECOS Secure Linux operating system
- Digitally signed boot loader, firmware and applications with validation in Chain-of-Trust
- Integrated firewall to protect against attacks in the same network and block ping requests
- Encryption of RAM contents down to the program code to be executed
- VM Start Detection prevents use in a virtual environment
- Fingerprinting of the guest computer including peripherals
- Instant logout when unplugging the SBS
- Secured process for updating firmware and applications with integrity check and correct update server