CPARIS provides the highest level of security for file transfer. The following outlines the comprehensive measures CPARIS employs to ensure that client data remains safe. These include SSL encryption for file sending and downloading. All of these measures are supported entirely by CPARIS, without requiring IT departments to specially configure their firewalls or to maintain user log-ins and passwords.
To ensure that data is not compromised in transfer, CPARIS employs the Secure Socket Layer (SSL) protocol. SSL works by encryption. A secure website first sends a client's browser a public encryption key, which is used to construct another, unique, non-public encryption key. This key, which is known only to the web server and the client, is then used to protect all subsequent transfers of information. In practice, SSL provides a secure tunnel between two points on the internet. Files transferred along this tunnel are wrapped in a layer of encryption that makes them impossible for third parties to view or compromise.
The encryption methods CPARIS uses are based on keys only available to the client and the server, making it practically impossible to decode the data sent, even if it is intercepted.
No outside source can modify data as it travels between a client and a server. If data is changed in transit, the protocol automatically recognizes the modification and asks the client to resubmit the file.
CPARIS solution is inherently cross platform and works on any browser. Even if a client is remote and has no access to an FTP client, s/he can still download files securely using any web browser.
CPARIS helps its clients secure such file transfers with password-protection. This service requires that the recipient of a file have a CPARIS account. They must log in with their username and password prior to being allowed to upload or download a file. Clients can check to ensure that no unexpected downloads of a file occurred. Clients can also delete a file from CPARIS servers if they fear they may have been compromised. Files are also automatically deleted after a set period of time.
To ensure that data is never lost, CPARIS maintains two separate servers, both hardened to resist fire, earthquakes and other natural disasters. In addition, all files stored on CPARIS servers is encrypted using industry-standard techniques. This ensures that decryption without the proper keys is impossible.
Both Secure FTP and SSH solutions require ports to be opened permanently in a firewall to allow for inbound commands to a network, leaving them vulnerable to attack. CPARIS SSL works with the HTTP protocol on port 443, which does not require a permanently open port. Instead, firewalls dynamically open and close the port for it as needed.
CPARIS has severely limited access to its servers. Public access to CPARIS offices is limited to certain rooms, which are under constant surveillance by the staff. The servers do not allow any public access; only identified persons acknowledged by the management may enter them. Their entry and exit time is recorded and they must not only have a correct password but they also must pass a biometric scan to gain entry.


