Security

Nothing in the clear, and nobody out of scope

vKOM Secure is built for organisations that expect to be probed.

Nothing in the clear from the internet

  • Signalling only over TLS (SIP-TLS and secure WebSocket)
  • Voice encrypted to phones and browsers (SRTP and DTLS-SRTP)
  • Default-deny firewalls on every server
  • Network topology hidden from the outside

Toll-fraud and attack shield

  • Flood detection, scanner blocking and automatic bans pushed into the firewall
  • Brute-force lock-outs
  • Per-customer limits on simultaneous calls and calls per minute
  • Phones cannot fake their identity

Administrator security

  • Two-step sign-in and a complete audit log
  • One sealed emergency administrator account, which raises alerts when it is used

API security

  • Keys tied to one customer and to approved server addresses
  • Encrypted, certificate-pinned connections
  • Abuse detection

Sovereignty

  • No foreign cloud: everything runs on VOIMAR or customer hardware in South Africa
Military-grade

What military-grade means in vKOM Secure

Military-grade here means these five things, all built into the platform today.

  • 01Encryption on every public link
  • 02Sovereign hosting on VOIMAR or your own hardware
  • 03An attack shield that bans in under 30 seconds
  • 04Sealed break-glass administrator access that raises an alert on every use
  • 05API keys bound to one customer and one approved server, over pinned TLS

Built for defence and government security requirements. We make no certification or accreditation claim.

Ready to put your communications under your own command?

Tell us about your organisation and we will be in touch. Powered by VOIMAR.