VoLTE Encryption Solution
We provide the VoLTE encryption call solution without any support or detection from carriers, avoiding interception from the carrier’s network. The solution features 3 types of products: KMS, U-key, and VoLTE encrypted phone. You only need normal SIM cards to make encrypted calls, directly using the carrier’s VoLTE service without deploying any server.
Ultra Secure Design
Industry-leading IBE E2EE technology, leading ECC 1024bit secret key, completely offline and closed private key generator, key injection is completed through encrypted QR code, and the whole process does not require online operation. Support encryption algorithm customization.
IBE E2EE Technology
Identity based encryption with leading key strength: 1024-bit private key elliptic curve, more secure than ECC256.
KMS Offline Hardening
The entire process of KMS key generation and registration is offline, with physical ports closed. No network security threat.
U-key Authentication
Dual authentication by U-key and password to ensure the legitimacy of the operation.
Multiple Administrators
Through department configuration, physical-level encryption isolation of departments is achieved.
Algorithm Customized & CIV/CWT
We can provide professional service and SDK for symmetric encryption algorithms customization and CIV/CWT.
PQC to be Evolved
Support PQC evolution in future to cope with the upcoming quantum computer cracking.
A Secure and Efficient E2EE Private Key Generating Solution
Offline Design
All private key generation and transmission are done locally offline to avoid network security risks.
ECC 1024-bit Key
1024-bit private key of elliptic curve, more secure than ECC256.
The KMS — Private Key Generator
KMS is a dedicated private key generation device designed for end-to-end encryption (E2EE), enabling users to quickly and securely generate private keys with encrypted QR codes. Only 2 parameters are required: enter your domain and phone number, and your encryption key is ready in a second.
2 Types of Deployment Options to Meet Different Security Level:
- Standard — Lightweight & convenient, works on normal tablet devices, easy to deploy and ready to use.
-
KMS Pro (Kiosk) — Maximum Security
- Highly Secured: Physical port lockdown: USB, WiFi, and Bluetooth completely disabled, ensuring zero data leakage.
- System-Level Protection: Locked into the KMS app upon startup, preventing access to other apps or system settings.
- U-Key Dual Authentication: Requires a dedicated U-Key for authorization — when removed, the device locks instantly for enhanced security.
KMS
Key Management System
PAD Form Factor | Offline Operation
The Encrypted Phone — ST1
The only model of VoLTE encryption terminal on market without the rely on the carrier’s support. ST1 has customization on the modem. It encrypts voice data before in the operator’s VoLTE standard process. Due to the IBE E2EE technology, the success rate and efficiency of encryption establishment are very high.
Encrypted Phone Call Flow
The voice stream will be encrypted before sending, even if it is obtained by the operator or others, it cannot be cracked. Only the User-A and User-B can decrypt the voice.
User A
Carrier VoLTE Network
(Encrypted RTP)
User B
Session keys are carried via RTP Payload (user plane), not modifying SIP signaling — completely transparent to the carrier’s core network and IMS.
* Learn the Risks of Your Call (VoLTE)
Learn how secure are your VoLTE calls:
deepsec.net/docs/Slides/2017/How_secure_are_your_VoLTE_and_VoWiFi_Calls_Sreepriya_Chalakkal.pdf
Learn about ReVoLTE Attack:
Need Help with algorithm replacement? We Are Experts!
Our value is “Encrypted, Private, Yours” — to ensure your privacy without interception. For additional inquiries or customized solutions, please don’t hesitate to contact us.
Contact Us