Solutions — Networks and Cybersecurity

Made in Germany, backdoor-free — end-to-end IT security for organizations in Taiwan

Rohde & Schwarz Networks and Cybersecurity, the company LANCOM Systems and R&S Cybersecurity merged into, supplies BSI-approved network encryption, endpoint security and unified threat management. Government agencies, hospitals and enterprises in Taiwan use it to meet the duties of the Telecommunications Management Act, the Personal Data Protection Act and the Classified National Security Information Protection Act, and to stay aligned with the national iSOC security monitoring framework and the EU NIS2 directive.

This page is for: telecom carriers, enterprise CISOs, ISPs and government IT security teams. If you integrate aerospace or defense systems, see the Aerospace and Defense solution.
AES-256
Encryption standard for carrier backbone links (R&S SITLine ETH, Layer 2), for the network security duties of the Telecommunications Management Act
200 Gbps
Maximum encrypted throughput of the R&S SITLine ETH-XL, enough to scale with a carrier backbone link in Taiwan
VS-NfD / EU Restricted / NATO Restricted
Classification levels approved by the German BSI (R&S®SITLine, ComSec, Trusted Disk)
IEC 62443 / NIS2 / Telecommunications Management Act
The compliance frameworks a CISO in Taiwan has to answer to: OT security, the EU network resilience directive and local telecom regulation

What the security threat actually looks like

Digital transformation delivers efficiency, and it widens the attack surface just as fast. Under Taiwan's own regulatory framework, enterprises, government agencies and critical infrastructure operators face steadily harder security demands:

  • The Telecommunications Management Act requires telecom operators to implement network security management, with substantial administrative fines for non-compliance; the Personal Data Protection Act attaches joint liability to a personal-data breach, so encryption has to cover the whole data lifecycle
  • The Classified National Security Information Protection Act requires cleared personnel and agencies to use certified encrypted transmission equipment, and the leakage risk of mobile working needs particularly tight control
  • The National Institute of Cyber Security (iSOC) is driving government agencies towards a security monitoring architecture and requires major public service systems to meet cyber security maturity criteria
  • Ransomware and supply-chain attacks continue to escalate worldwide, and Taiwan's semiconductor, defense and critical infrastructure sectors are now priority targets for APT groups
  • Remote working has multiplied endpoint devices, expanding IT management complexity and the attack surface together; multi-site operations also need secure, managed connectivity between locations
  • All of the above aligns closely with the EU NIS2 directive (in force since October 2024), which lowers certification friction for Taiwanese suppliers entering the European market

Security architectures for every industry

From government agencies, hospitals and commercial enterprises to financial institutions and defense organizations, R&S builds security architectures designed in depth for each scenario; KanTek Technology supports customers in Taiwan with local enquiries and introductions.

EU flags and the European Parliament — NIS2 directive compliance

Secure networks for government and the public sector

Supports the digital transformation of government bodies, educational institutions and public administration with a complete IT security framework for NIS2 and GDPR requirements. It combines LANCOM R&S® Unified Firewalls (intrusion detection, antivirus scanning, content filtering) with R&S®SITLine network encryptors so that traffic between agencies is encrypted end to end.

R&S official page
Clinicians collaborating on a tablet — healthcare security

Cybersecurity for healthcare

Health IT Infrastructure packages for practices, hospitals and care facilities, and Health IT Cluster Solutions for networking across institutions. R&S works here with partners including Philips Healthcare, Dräger Medical Services and Stanley Healthcare. The portfolio addresses NIS2 (in force since October 2024) and GDPR and carries the “IT Security Made in Germany” trust mark.

R&S official page
SD-WAN secure network workflow for commercial business

SD-WAN and network security for commercial business

SD-WAN / SD-Branch for multi-site companies, over MPLS, Ethernet, DSL, fiber and mobile networks (LTE-Advanced, 5G). LANCOM Unified Firewalls add UTM functions including machine-learning malware protection, and the LANCOM Management Cloud provides central management and real-time visibility.

R&S official page
R&S®ComSec secure mobile connectivity solution

Secure mobile connectivity: R&S®ComSec

Built on the Apple indigo platform, ComSec lets an unmodified iPhone or iPad handle private data and VS-NfD classified official data on one device. E-mail, calendar, contacts, a messenger and an intranet browser run as native apps, no smartcard or SD card is needed as a security anchor, and free updates are guaranteed for at least five years. BSI approval was granted in October 2022.

R&S official page
R&S®Browser in the Box — Network Computing Award 2022 software product of the year

Endpoint security for financial institutions

R&S®Browser in the Box runs browsing in a fully virtualized environment, separating internal and external networks and containing zero-day exploits and malware; it supports Chrome, Firefox and Tor as well as video conferencing with microphone and camera. R&S®ComSec covers the VS-NfD level and integrates with agilimo Consulting's security operations centre in Germany.

R&S official page
R&S®SITLine ETH network encryptor

Network encryptors (Layer 2 / Layer 3)

The R&S®SITLine family encrypts Ethernet links from 100 Mbit/s to 200 Gbps and the R&S®Trusted VPN family encrypts at IP level up to 6.5 Gbps, using AES 128/256-bit and ECC 257/384/512-bit cryptography to protect critical infrastructure and classified communications.

R&S official page
Aerospace and defense information security

Cybersecurity for aerospace and defense

Military-grade endpoint security and communications encryption. R&S®Trusted Disk uses high-grade cryptography to protect classified data against tampering, destruction and theft, supports zero-trust principles and is built backdoor-free; it is approved by the German BSI for classified information.

R&S official page
Endpoint security / full-disk encryption (R&S product image)

Endpoint security (full-disk encryption)

R&S®Trusted Disk provides BSI-approved full-disk encryption for Windows devices at the VS-NfD / EU RESTRICTED / NATO RESTRICTED classification levels, encrypting the operating system, user data and temporary files transparently in real time, with built-in two-factor pre-boot authentication.

R&S official page
Lawful interception platform (R&S product image)

Lawful interception

R&S lawful interception (LI) solutions implement the three-layer handover interface architecture defined in ETSI TS 101 232 / ETSI TS 103 221 — HI1 (administration), HI2 (intercept related information) and HI3 (content of communication) — across IMS, EPC (4G) and 5G Core (5GC) integrations. Taiwan equivalent: telecom operators must be able to assist interception under the Telecommunications Management Act and an NCC authorization.

R&S official page

Core R&S instruments for network and security measurements

The instruments below are used for security research, TEMPEST measurements and side-channel analysis. KanTek Technology provides procurement advice, calibration and repair for all of them.

R&S®FSW

R&S®FSW

Flagship signal and spectrum analyzer for TEMPEST and side-channel emission measurements (optional K30 noise measurement)

Full specifications
R&S®FSV3000

R&S®FSV3000

Mid-range signal and spectrum analyzer for signal capture and analysis in a security laboratory

Full specifications
R&S®ZNH

R&S®ZNH

Handheld vector network analyzer for on-site troubleshooting in data centres and at 5G sites

Full specifications
R&S®Spectrum Rider FPH

R&S®Spectrum Rider FPH

Handheld spectrum analyzer for portable penetration testing and electromagnetic security sweeps

Full specifications
R&S®CMW500

R&S®CMW500

Wideband radio communication tester for LTE protocol security and load testing; 5G NSA scenarios need the CMX500 alongside it

Full specifications
R&S®ZNB

R&S®ZNB

Vector network analyzer for calibrating network protocol probes and assessing RF front-end security

Full specifications
R&S®SGT100A

R&S®SGT100A

Vector I/Q signal generator for emulating network traffic attack scenarios and stress-testing encrypted channels

Full specifications
R&S®FSVA3000

R&S®FSVA3000

Signal and spectrum analyzer for TEMPEST side-channel leakage assessment and electromagnetic security sweeps

Full specifications

Automation and integration

Network and security engineers evaluating the R&S lawful interception (LI) platform and LANCOM network equipment need to know the OSS/BSS integration path and how far management protocol support goes. The main control and management protocols supported by the R&S solutions are listed below.

SNMP (Simple Network Management Protocol)

The whole LANCOM Systems range of routers, switches and firewalls supports SNMPv2c and SNMPv3 with complete MIB definitions, so the devices integrate into an existing OSS monitoring platform such as Zabbix, Nagios or SolarWinds. The LANCOM Management Cloud (LMC) API additionally exposes a REST interface for automated provisioning.

REST API (LANCOM Management Cloud)

The LANCOM Management Cloud provides a RESTful API (JSON over HTTPS) for device configuration, firmware management, topology queries and alarm push. It integrates with enterprise BSS systems, a service catalogue or a Terraform/Ansible automation pipeline.

About the LANCOM Management Cloud

NETCONF / YANG (network configuration protocol)

The high-end R&S SITLine network encryptors support NETCONF (RFC 6241) and YANG data models, which is what carrier and large government OSS integrations need. Contact KanTek Technology to confirm support for a specific model.

NETCONF / YANG: ietf-interfaces@2018-02-20.yang

R&S LI platform (lawful interception) — ETSI HI interfaces

The R&S lawful interception (LI) platform implements the three standard handover interfaces defined in ETSI TS 101 232 / TS 103 221: HI1 (administration), HI2 (intercept related information) and HI3 (content of communication). Licensing model: capacity is licensed per concurrent intercept session, not by data volume — state the maximum number of simultaneous intercepts you expect in the RFQ and KanTek Technology will help estimate the licence cost.

ETSI LI interfaces: ETSI TS 103 221 (HI1 / HI2 / HI3)
R&S LI platform technical page

R&S LI platform licensing model: capacity is licensed per concurrent intercept session, not per intercept event. LANCOM device management is licensed in tiers by device count (LANCOM Management Cloud subscription). Ask KanTek Technology for a quotation with the detailed licence terms.

To confirm SNMP MIB versions, the REST API endpoint list, NETCONF YANG models or the ETSI interface specifications of the LI platform, describe your OSS/BSS integration architecture in the requirement field of the RFQ and a KanTek Technology engineer will arrange a technical session with R&S factory engineers.

Proven in the field: customer deployments

Representative deployments at Rohde & Schwarz customers worldwide. Entries marked “illustrative” have had their details anonymized and are given as scenario references only.

Chunghwa Telecom — enterprise backbone security compliance framework

Chunghwa Telecom Co., Ltd. (Taiwan's largest telecom operator, TWSE: 2412) operates critical national communications infrastructure and keeps strengthening backbone encryption and network security under the Telecommunications Management Act and the NCC's cyber security management rules for telecom enterprises. KanTek Technology has briefed Chunghwa Telecom's enterprise business group on R&S LANCOM and SITLine ETH encryptors, covering Layer 2/3 encryption architecture, the scope of the approvals and SD-WAN integration. Chunghwa Telecom is a publicly listed company; this entry records a technical exchange, contains no confidential procurement detail, and the related public information can be found on the company's own website and in its exchange filings.

Read the original

Dussmann Group multi-site connectivity

The international service group Dussmann Group uses LANCOM R&S® solutions for secure connectivity between its sites and GDPR-compliant wide-area network management.

Read the original

Network security at the OPTIMA packaging group

OPTIMA, a global manufacturer of packaging equipment, uses the LANCOM R&S® architecture to harden its industrial networks against a growing volume of digital threats.

Read the original

Security research statistics for the financial sector Illustrative

Industry research found that only 7% of the financial institutions surveyed had seen no cyber attack in the previous 12 months; 76% recorded between 1 and 20 successful attacks; 51% suffered credential theft; and 70% of financial companies had become victims of cyber crime through a mishandled e-mail attachment.

Read the original

Backbone encryption compliance at a large telecom operator in Taiwan Illustrative

A large telecom operator in Taiwan (more than a million subscribers) introduced R&S SITLine ETH network encryptors in 2024 to meet its security duties under the Telecommunications Management Act, deploying Layer 2 AES-256 encryption on the backbone links between its northern and southern facilities. Deployment took six weeks and the NCC audit after go-live returned no findings. KanTek Technology handled procurement consulting, on-site installation coordination and the first-year maintenance SLA, and holds spare units in its New Taipei warehouse for a four-hour replacement. [Disclosure: the customer is not named, under a confidentiality agreement. Under NDA we can provide an indirect verification route through the compliance framework of Chunghwa Telecom's enterprise cloud services, or a redacted compliance statement for the NCC audit, for procurement evaluation.]

Core specifications of the encryption products

The figures below come from the official Rohde & Schwarz product pages. KanTek Technology can supply the full data sheets and help with model selection.

Specification Value / range Notes
Maximum Layer 2 encryptor throughput 200 Gbps (R&S®SITLine ETH-XL, 2 data lines) AES 256-bit encryption
Layer 2 encryptor family ETH50: 100 Mbit/s; ETH4G: 4 Gbit/s; ETH-S: 10 Gbit/s; ETH-L/ETH40G: 40 Gbit/s; ETH-XL: 200 Gbps 1 to 8 data lines depending on model
Layer 3 VPN encryptor family R&S®Trusted VPN-S: 250 Mbps; VPN-L: 500 Mbps; VPN-XL: 6.5 Gbps (full duplex)
Cryptographic algorithms AES 128/256-bit; ECC 257/384/512-bit
Classification approvals VS-NfD (German RESTRICTED, for official use only), EU RESTRICTED, NATO RESTRICTED Approved by the German Federal Office for Information Security (BSI)
R&S®ComSec device support Unmodified iPhone / iPad (Apple indigo platform), free updates guaranteed for at least 5 years BSI approval granted in October 2022
R&S®Browser in the Box browser support Chrome, Firefox, Tor (workstation edition); Chrome, Firefox (terminal server edition) Network Computing Award 2022, software product of the year
SD-WAN connectivity MPLS, Ethernet, DSL, fiber, LTE-Advanced, 5G PoE switch support, gigabit Ethernet interfaces
R&S®Trusted Disk encryption scope Operating system, user data and temporary files (transparent real-time encryption) Approved to protect VS-NfD / RESTRICTED classified information
Applicable regulations NIS2 directive (in force since October 2024), GDPR, German data protection law

Local engineering support, end to end

Authorized R&S distributor
Calibration and repair in Taiwan
Instrument rental (launching soon)
Reply within 24 hours
Next-business-day spare parts (New Taipei stock)
10+ years of parts support

Industries that work with KanTek Technology

Government and public administration Hospitals and care institutions Medium and large commercial enterprises Financial institutions Defense and critical infrastructure Educational institutions

[Illustrative case · details anonymized, for reference only until the customer agrees to publication] A large telecom operator in Taiwan (more than a million subscribers) introduced R&S SITLine ETH network encryptors in 2024 to meet its security duties under the Telecommunications Management Act, deploying Layer 2 AES-256 encryption on the backbone links between its northern and southern facilities. Deployment took six weeks and the NCC audit after go-live returned no findings. KanTek Technology handled procurement consulting, on-site installation coordination and the first-year maintenance SLA, and keeps spare units in its New Taipei warehouse for a four-hour replacement.

Send us your security requirement and we will reply within 24 hours

Government agencies, hospitals, financial institutions and companies of every size are welcome to contact us for a professional assessment of a security solution and a quotation.

By submitting this form you agree that we will handle your data in accordance with our Privacy Policy.

How we work

From first enquiry to long-term support

A five-step process, so every measurement requirement gets a precise, properly specified answer.

  1. 1. Application consultation

    Tell us the application and the measurements you need, and we suggest a first shortlist.

  2. 2. Requirement review

    We work through the specifications and the budget to settle the right instrument configuration.

  3. 3. Proof of concept / evaluation loan

    An on-site demonstration or an evaluation unit, so you confirm the performance on your own signals.

  4. 4. Purchase agreement and delivery

    Quotation confirmed and the order placed, then factory stock scheduled against your required date.

  5. 5. Calibration and long-term support

    We arrange calibration to ISO/IEC 17025 through a partner laboratory, plus repair and ongoing technical advice.

Further reading: how these measurements actually work

Go to the Knowledge Centre