Communications interopérables pour les environnements de partenaires de mission

Une infrastructure souveraine, interopérable et sécurisée en temps réel pour les opérations conjointes et de coalition, où chaque partenaire conserve le contrôle total.

Element Grid view on a rugged laptop
Le défi

Fournir des communications souveraines et sécurisées entre les forces alliées.

Traditionnellement, les armées individuelles disposent de leurs propres communications sécurisées, mais ne peuvent généralement pas prendre en charge les communications avec d'autres forces alliées.

Les environnements de partenaires de mission (EPM) fournissent l'infrastructure sécurisée et interopérable qui permet aux forces militaires et à leurs partenaires de confiance de communiquer, de collaborer et d'échanger des informations classifiées sensibles au-delà des frontières organisationnelles et nationales.

{"size":{"width":720,"height":600},"sizeMode":"aspect","aspectRatio":"4:3","clusters":[{"id":"c_mpe_1","name":"Cluster 1","radius":120,"rotation":0,"core":{"label":"","show":true,"shape":"cloud","rings":false,"filled":false},"rings":[{"id":"r_mpe_1","radius":60,"rotation":90,"connectToCore":true,"connectInRing":"full","animateConnections":true,"enclosed":true,"enclosedShape":"cloud","arrows":"both","nodes":[{"id":"n_mpe_1a","label":"","shape":"cloud","childRadius":10,"childRotation":45,"children":[{"id":"n_mpe_1a1","label":"","shape":"cloud","childRadius":10,"childRotation":0,"children":[{"id":"n_mpe_1a2","label":"","shape":"cloud"}]}]},{"id":"n_mpe_1b","label":"","shape":"cloud"}]}]},{"id":"c_mpe_2","name":"Cluster 2","radius":180,"rotation":120,"core":{"label":"","show":true,"shape":"cloud","rings":false,"labelPosition":"below"},"rings":[{"id":"r_mpe_2","radius":60,"rotation":270,"connectToCore":false,"connectInRing":"full","animateConnections":true,"enclosed":true,"enclosedShape":"cloud","enclosedStyle":"dashed","arrows":"both","edgeStyle":"solid","nodes":[{"id":"n_mpe_2a","label":"","shape":"cloud"},{"id":"n_mpe_2b","label":"","shape":"cloud"}]}]},{"id":"c_mpe_3","name":"Cluster 3","radius":180,"rotation":240,"core":{"label":"","show":true,"shape":"cloud","rings":false},"rings":[{"id":"r_mpe_3","radius":60,"rotation":300,"connectToCore":true,"connectInRing":"full","animateConnections":true,"enclosed":true,"enclosedShape":"cloud","nodes":[{"id":"n_mpe_3a","label":"","shape":"cloud"},{"id":"n_mpe_3b","label":"","shape":"cloud"},{"id":"n_mpe_3c","label":"","shape":"cloud"}]}]}],"connections":[{"from":"c_mpe_1","to":"c_mpe_2","style":"solid","arrows":"both","packetFlow":"bidirectional","animate":true},{"from":"c_mpe_2","to":"c_mpe_3","style":"solid","arrows":"both","packetFlow":"bidirectional","animate":true},{"from":"c_mpe_1","to":"c_mpe_3","style":"solid","arrows":"both","packetFlow":"bidirectional","animate":true}],"boundsIncludeEnclosure":true,"padding":0}
La puissance de Matrix

Une norme ouverte qui donne le contrôle à chaque partenaire.

La norme ouverte Matrix permet à chaque nation ou organisation participante de déployer et de contrôler sa propre solution de communication préservant sa souveraineté. Ces déploiements distincts peuvent ensuite se connecter multilatéralement via une fédération sécurisée basée sur Matrix, au sein d'un réseau décentralisé hautement résilient.

Il n'y a pas de réseau centralisé, pas de point de contrôle unique, et aucune nation ne détient les clés maîtresses.

{"sizeMode":"aspect","aspectRatio":"1:1","clusters":[{"id":"c1","name":"Nation A","radius":200,"rotation":270,"core":{"label":"","show":true,"shape":"square","color":"#0dbd8b","labelPosition":"inside","rings":false},"rings":[{"id":"r1","radius":46,"rotation":0,"connectToCore":true,"connectInRing":"full","animateConnections":false,"enclosed":true,"enclosedShape":"circle","enclosedStyle":"dashed","nodes":[{"id":"n1b","label":"","shape":"dot"},{"id":"n1c","label":"","shape":"dot"}]}]},{"id":"c2","name":"Nation B","radius":200,"rotation":342,"core":{"label":"","show":true,"shape":"square","color":"#0dbd8b","labelPosition":"inside","rings":false},"rings":[{"id":"r2","radius":46,"rotation":0,"connectToCore":true,"connectInRing":"full","animateConnections":false,"enclosed":true,"enclosedShape":"circle","enclosedStyle":"dashed","nodes":[{"id":"n2a","label":"","shape":"dot"}]}]},{"id":"c3","name":"Nation C","radius":200,"rotation":54,"core":{"label":"","show":true,"shape":"square","color":"#0dbd8b","labelPosition":"inside","rings":false},"rings":[{"id":"r3","radius":46,"rotation":330,"connectToCore":true,"connectInRing":"full","animateConnections":false,"enclosed":true,"enclosedShape":"circle","enclosedStyle":"dashed","nodes":[{"id":"n3a","label":"","shape":"dot"},{"id":"n_dkshyi","label":"","shape":"dot"},{"id":"n3b","label":"","shape":"dot"},{"id":"n3c","label":"","shape":"dot"},{"id":"n_wlu8j3","label":"","shape":"dot"}]}]},{"id":"c4","name":"Nation D","radius":200,"rotation":126,"core":{"label":"","show":true,"shape":"square","color":"#0dbd8b","labelPosition":"inside","rings":false},"rings":[{"id":"r4","radius":46,"rotation":0,"connectToCore":true,"connectInRing":"full","animateConnections":false,"enclosed":true,"enclosedShape":"circle","enclosedStyle":"dashed","nodes":[{"id":"n4a","label":"","shape":"dot"},{"id":"n_yvjy77","label":"","shape":"dot"},{"id":"n4b","label":"","shape":"dot"},{"id":"n4c","label":"","shape":"dot"}]}]},{"id":"c5","name":"Nation E","radius":200,"rotation":198,"core":{"label":"","show":true,"shape":"square","color":"#0dbd8b","labelPosition":"inside","rings":false},"rings":[{"id":"r5","radius":46,"rotation":0,"connectToCore":true,"connectInRing":"full","animateConnections":false,"enclosed":true,"enclosedShape":"circle","enclosedStyle":"dashed","nodes":[{"id":"n5a","label":"","shape":"dot"},{"id":"n5b","label":"","shape":"dot"},{"id":"n5c","label":"","shape":"dot"}]}]}],"connections":[{"from":"c1","to":"c2","style":"solid","arrows":"none","packetFlow":"bidirectional","animate":true},{"from":"c1","to":"c4","style":"solid","arrows":"none","packetFlow":"bidirectional","animate":true},{"from":"c1","to":"c5","style":"solid","arrows":"none","packetFlow":"bidirectional","animate":true},{"from":"c2","to":"c3","style":"dashed","arrows":"none","packetFlow":"bidirectional","animate":true},{"from":"c2","to":"c4","style":"solid","arrows":"none","packetFlow":"bidirectional","animate":true},{"from":"c3","to":"c4","style":"solid","arrows":"none","packetFlow":"bidirectional","animate":true},{"from":"c3","to":"c5","style":"solid","arrows":"none","packetFlow":"bidirectional","animate":true},{"from":"c4","to":"c5","style":"solid","arrows":"none","packetFlow":"bidirectional","animate":true}]}

La combinaison d'Element et de Matrix offre aux opérateurs de sécurité nationale une solution de communication sécurisée, interopérable et résiliente. Elle préserve la souveraineté numérique tout en permettant une collaboration efficace entre le gouvernement, les partenaires de mission et la base industrielle de défense.

Matthew Hodgson
PDG et cofondateur, Element
La puissance d'Element

La solution qui le rend déployable

Element est la suite de produits basée sur Matrix qui offre une solution de communication MPE complète et de qualité militaire, de l'expérience utilisateur à l'infrastructure serveur et aux limites de classification.

Frontend

Element Pro

L'application d'entreprise phare d'Element, prenant en charge les cas d'utilisation MPE via des extensions Pro, disponible sur le web, les ordinateurs de bureau, Android et iOS. Conçue pour répondre aux attentes d'utilisabilité des opérations modernes tout en satisfaisant aux exigences de sécurité des environnements classifiés.

Étiquettes de classification

Étiquettes de classification STANAG 4774 gérées par SPIF et liées cryptographiquement, avec une granularité par message et par salle.

Element PRO App (dark mode) showing Grid View, allowing a user to monitor and communicate in multiple rooms easily.

Application des politiques côté client

Appliquer les politiques de sécurité directement sur les appareils des utilisateurs.

Gestion des appareils mobiles

Contrôles MDM sur l'ensemble des parcs d'appareils gérés.

Épinglage de certificat

Assure la connexion avec le serveur prévu.

GridView

Tableau de bord centralisé.

Jeton matériel et authentification X.509

Capacité d'authentification par jeton matériel et certificat client TLS X.509.

Applications en marque blanche

Personnalisation de la marque.

Serveur

Element Server Suite Pro (ESS Pro)

L'infrastructure côté serveur qui permet l'auto-hébergement, les configurations et les contrôles de politique pour maintenir le déploiement de chaque nation partenaire souverain et prêt à l'accréditation.

Application des politiques côté serveur

Point d'application des politiques côté serveur pour l'étiquetage CMLS STANAG 4774.

Element PRO Admin dashboard (dark mode) showing users list and server controls like and Auditing and Moderation.

Contrôle de la fédération

Fédération fermée ou ouverte avec un contrôle administratif complet sur les connexions, les utilisateurs finaux et la gestion des accès.

LTS releases

Long-term support releases with SLA commitments.

Advanced security advisories

Advanced security advisories for seamless updates

Advanced identity and access

Identity and access management, auditing and admin capabilities.

Deployment options

Air-gapped, self-hosted and hosted deployment options.

{"size":{"width":720,"height":600},"core":{"label":"HIGH","show":true,"shape":"square","labelPosition":"inside","rings":false,"color":"#0dbd8a"},"rings":[{"id":"r_cds_inner","radius":39,"rotation":90,"connectToCore":true,"connectInRing":"full","animateConnections":true,"enclosed":true,"nodes":[]},{"id":"r_cds_outer","radius":66,"rotation":90,"connectToCore":true,"connectInRing":"none","animateConnections":true,"nodes":[{"id":"n_cds_diamond","label":"Cross Domain Gateway","shape":"diamond","labelPosition":"below","color":"#0DBD8B","filled":true,"size":"small","childRadius":70,"childRotation":0,"childArrows":"both","children":[{"id":"n_cds_low","label":"LOW","shape":"square","color":"#0096ff","enclosed":true}]}]}],"boundsIncludeEnclosure":false,"sizeMode":"aspect","aspectRatio":"2:1"} HIGH Cross Domain Gateway LOW
Spanning air-gapped environments

Cross Domain Gateways

Securely connect high-trust and low-trust environments, decrypting, inspecting and re-encrypting data.

Enforce strict data loss protection and content filtering rules at every classification boundary.

Replace manual information sharing with controlled, auditable, real time flows between high-side and low-side networks.

{"size":{"width":720,"height":600},"core":{"label":"INT","show":true,"shape":"square","labelPosition":"inside","rings":false,"color":"#0dbd8a"},"rings":[{"id":"r_sbg_inner","radius":39,"rotation":90,"connectToCore":true,"connectInRing":"full","animateConnections":true,"enclosed":true,"nodes":[]},{"id":"r_sbg_outer","radius":66,"rotation":90,"connectToCore":true,"connectInRing":"none","animateConnections":true,"nodes":[{"id":"n_sbg_diamond","label":"Secure Border Gateway","shape":"triangle","labelPosition":"below","color":"#0DBD8B","filled":true,"size":"small","childRadius":70,"childRotation":0,"children":[{"id":"n_sbg_partner","label":"Ext","shape":"square","color":"#0096ff"}]}]}],"boundsIncludeEnclosure":false,"sizeMode":"aspect","aspectRatio":"2:1"} INT Secure Border Gateway EXT
Network perimeter defence

Secure Border Gateways

Control internal and external federation at the network boundary.

Rules-based application layer firewall with federation controls to securely manage your Matrix network.

Determine and manage who can connect, to manage the risk of unauthorised access, data breaches, and any malicious activities.

The scenarios

Built for how coalition operations actually work

From strategic headquarters to the tactical edge, Element supports the full operational spectrum of the MPE use cases.

Multinational coalition HQ

Each partner nation runs its own federated ESS Pro server. Personnel communicate across national boundaries in real time, with each nation retaining digital sovereignty and full administrative control over its own deployment.

Cross domain intelligence sharing

Element’s Cross Domain Gateways act as a secure policy-enforced bridge between classification levels. High-side and low-side networks exchange controlled information without manual transfer or removable media.

Exercises and surge operations

Set up a federated MPE environment in hours, not months. When exercises conclude, partner connections dissolve cleanly, and each nation's data remains entirely within its own infrastructure.

Tactical edge and DDIL operations

Support field units, vessels and vehicles operating in denied, disrupted, intermittent and limited environments. Element’s low-bandwidth and ultra-low-bandwidth transports and mesh-ready architecture keep teams connected where conventional messaging fails.

Interagency and NGO coordination

Humanitarian response operations need to extend to civilian agencies and NGOs. Partners can be added through multi-tenancy, managed hosting or each party being able to spin up its own deployment.

End-user assurance

Each partner connects Element to their own directory system to carefully control which end users join, and under what conditions. Federated identity that respects each nation's own access policies.

Data centric security

STANAG 4774 labelling and policy enforcement built in

Element Pro supports STANAG 4774.7 Confidentiality Metadata Labelling Syntax (CMLS) for cryptographically enforced data centric security. Labels are applied at every level - server, room, and individual message.

On the server side, ESS Pro provides a Policy Enforcement Point for integration with external Policy Decision systems. Full SIEM integration ensures that every policy decision can be ingested for a complete forensic audit trail across the MPE.

Two federated Matrix deployments showing Element Pro clients, homeservers with policy enforcement for client-server and server-server traffic, Matrix Authentication Service, upstream identity providers and policy decision points, plus an XMPP bridge on the first deployment.
Air-gapped deployment

Fully isolated. Zero external dependencies.

Element Pro and ESS Pro operate in air-gapped environments without dependencies on internet connections. The full MPE capability stack, running entirely within your own classified or private network.

Air-gapped Network illustration

XMPP and existing bridging.

Bridge to JChat (XMPP) and other existing military communications platforms enabling interoperability, without requiring partners to replace existing infrastructure.

Also trusted by allied defence and government for low-side communication

A sovereign, federated messenger for NATO and its member nations

NATO is addressing the issues caused by consumer messaging apps by introducing NI²CE messenger - a sovereign and secure low-side messenger based on Element - that is providing interoperability and autonomy internally and for its members.

Secure, sovereign messaging for over 100,000 active service members

The German Armed Forces operate a sovereign Element deployment as the standard for real time communications, hosted entirely within national infrastructure.

Organisations with requirements for interoperability, federation and data sovereignty should consider Element.

Heidi Shey, Principal Analyst, Forrester
The Forrester Wave™: Secure Communications, Q3 2024

Be in your element.

Des communications souveraines et sécurisées.