SecureSync® Time Server

Resilient, Secure, and Scalable: The SecureSync® 2400 Advantage

Overview

Modern defense and critical infrastructure operators face a growing set of timing‑related challenges driven by digitalization, increased reliance on GNSS, and tightening regulatory scrutiny. Precise and trusted time has become a foundational service for communications networks, energy grids, transportation systems, data centers, financial platforms, and military operations. At the same time, these environments are increasingly exposed to GNSS jamming and spoofing, cyberattacks, and systemic failures.

These vulnerabilities have driven the emergence of numerous national and
regional regulations addressing different but complementary dimensions of PNT. Some focus on
timing accuracy and UTC traceability (e.g., FINRA, MiFID II), others on availability and
operational continuity (e.g., DORA, SEBI), and an increasing number on cybersecurity and
resilience (e.g., NIS2, the Cyber Resilience Act).

More broadly, regulatory mandates such as the European Cyber Resilience Act (CRA), DORA,
and the U.S. Executive Order on Resilient PNT reflect a systemic shift: timing and PNT services
are now treated as critical infrastructure dependencies.

At the intersection of these requirements, time servers play a central role. They are not only
enablers of precise and traceable time, but also key components for ensuring resilient, secure,
and compliant network infrastructure, making them a foundational element in meeting modern
regulatory conformity across multiple sectors.

The Solution: Time & Frequency Reference System

SecureSync® 2400 directly addresses these market pressures by delivering a resilient, secure, and scalable time and frequency synchronization platform, designed for environments where timing failures are not an option.

Industry Challenges

Hardware-in-the-loop GNSS testing

GNSS Dependence and Vulnerability
Most modern infrastructures rely heavily on GNSS as a primary time source, yet GNSS signals are fragile and easily disrupted—whether unintentionally or through deliberate interference. Loss or degradation of GNSS can cascade into network outages, service disruption, or loss of operational synchronization.

The SecureSync® 2400 Advantage
SecureSync 2400 implements a layered‑defense timing architecture, combining multi‑band, multi‑constellation GNSS reception with optional interference detection and high‑performance internal oscillators. This ensures continuity of accurate time distribution during GNSS disturbances and aligns with resilience principles promoted by US and European authorities.

Regulatory Pressure on Operational Resilience
Regulations such as EO13905 (US) Cyber Resiliency Act (Europe) require operators of critical digital systems to demonstrate availability, integrity, monitoring, and recoverability of core services—including timing. Timing systems are no longer “invisible infrastructure”; they are auditable elements of operational resilience.

The SecureSync® 2400 Advantage
SecureSync 2400 is secure‑by‑design, featuring strong access control, authentication, encryption, audit logging, signed software updates, and a FIPS 140‑3 certified cryptographic module. These capabilities support compliance with European and US resilience and cybersecurity frameworks, making SecureSync 2400 a defensible component of regulated architectures.

Electric high voltage tower

Scaling Time Distribution Across Diverse Networks
Critical infrastructures increasingly span hybrid and large‑scale networks, mixing legacy systems, IP networks, high‑precision Ethernet, and geographically distributed sites. Timing architectures must scale without sacrificing accuracy or resilience.

The SecureSync® 2400 Advantage
SecureSync 2400 supports a full range of timing protocols—from NTP and PTP to White Rabbit—and scales from small protected networks to very large deployments handling millions of PTP requests per second. Optional network cards extend capacity up to multiple 1 GbE and 10 GbE ports, enabling future‑proof network timing architectures.

Time Servers

Long Lifecycle, Evolving Requirements
Defense and infrastructure systems are deployed for decades, while threats, standards, and interfaces continue to evolve. Static, single‑purpose timing appliances rapidly become obsolete.

The SecureSync® 2400 Advantage
A highly modular and field‑upgradeable design, supporting dozens of option cards and multiple oscillator classes, allows SecureSync 2400 to evolve over time. Operators can adapt timing performance, interfaces, and redundancy models without replacing the entire system—reducing lifecycle risk and total cost of ownership.

The SecureSync® 2400 transforms precise time from a hidden dependency into a resilient, secure, and regulation‑ready infrastructure service, purpose‑built for defense and critical infrastructure markets confronting both technical and regulatory disruption.

SecureSync® 2400 Features

Resilient Time & Frequency Synchronization Platform for Critical Infrastructure and Defense.

SecureSync® Time Server

Assured Timing for Evolving Threat and Regulatory Environments

SecureSync® 2400 is Safran’s resilient time and frequency synchronization platform, engineered to secure time reference acquisition and precise time keeping in environments exposed to GNSS interference, cyber threats, and regulatory pressure.

Modern defense and critical infrastructure systems increasingly depend on trusted timing. Government initiatives such as the US Executive Order on Resilient Positioning, Navigation, and Timing, the European Cyber Resilience Act (CRA), are shaping requirements for availability, integrity, resilience, monitoring, and recoverability of timing infrastructures.

SecureSync 2400 directly addresses these challenges through a layered‑defense timing architecture, minimizing the probability and impact of both RF‑based and cyber‑based attacks on timing services.

Resilient Timing Architecture Against GNSS Interference

Resilient timing depends on protecting both time reference acquisition and holdover performance when GNSS signals are degraded or denied.

SecureSync 2400 Provides:

  • Multi‑band, multi‑constellation GNSS reception (GPS, Galileo, QZSS, NavIC, BeiDou)
  • Optional GNSS interference detection, including jamming and spoofing
  • Multiple high‑performance internal oscillator options, ensuring timekeeping continuity during GNSS outages
  • Support for external network and legacy references to build multi‑source, fault‑tolerant architectures

This layered approach increases the complexity required to compromise timing services and aligns with resilience objectives emphasized in both EU and US critical infrastructure guidance.

Cybersecurity

Cybersecurity‑Driven Design

SecureSync 2400 is designed with security as a foundational requirement, not an add‑on.

Core Cybersecurity Capabilities:

  • VLAN support and network segmentation
  • Account and access management with configurable password policies
  • Authentication via LDAP, RADIUS, TACACS+
  • Configurable protocol enable/disable and access control lists
  • Encrypted management and services via SSL/TLS and SSH
  • Security event logging and auditability
  • Regular, signed firmware updates

Cryptographic Assurance:

SecureSync 2400 integrates a FIPS 140‑3 certified cryptographic module, used for all authentication and cryptographic functions.

White Rabbit

Scalable Network Timing: From NTP to White Rabbit

SecureSync 2400 delivers high‑performance, scalable network timing to support small protected networks as well as large, distributed infrastructures.

Network timing capabilities:

  • NTP v2 / v3 / v4, SNTP, and NTP Anycast
  • PTP v2 (IEEE 1588‑2019) with support for:
    • Default profile
    • Power profiles (IEEE 61850‑9‑2 / C37.238)
    • Telecom profiles (G.8265.1, G.8275.2 master only)
    • Enterprise and IEEE 802.1AS profiles
  • White Rabbit (via WROX option card), achieving nanosecond‑level accuracy on 1 GbE or 10 GbE, comparable to GNSS‑based timing

High‑throughput performance:

  • Base unit includes dual Gigabit Ethernet ports (RJ‑45 and SFP)
  • Expansion via option cards up to:
    • 12 × 1 GbE ports
    • 8 × 10 GbE ports

As a PTP Grandmaster, SecureSync 2400 supports up to 2 million PTP requests per second, enabling large‑scale deployment without architectural compromise.

SecureSync 2400 is a highly configurable platform

Unmatched Modularity for Legacy and Modern Timing Interfaces

SecureSync 2400 is built on a highly modular architecture, allowing precise adaptation to mission and infrastructure requirements.

Base Timing Interfaces:

  • 10 MHz frequency output
  • 1 PPS timing output
  • Software‑configurable I/O supporting:
    • TTL pulse signals
    • RS‑232 / RS‑485
    • IRIG AM and IRIG DCLS
    • NMEA and Have Quick time codes

Expansion Flexibility:

  • Available in 2‑slot (2402) and 6‑slot (2406) configurations
  • Support for more than 40 option cards, covering frequency, phase, network, and legacy timing interfaces
  • Field‑upgradeable to preserve long‑term system value and regulatory compliance

Reliability, Monitoring, and Operational Visibility

SecureSync 2400 is designed for continuous operation in demanding environments.

Reliability Features:

  • Optional dual, hot‑swappable power supplies
  • AC, 12 VDC, or 24/48 VDC power options
  • Redundant time reference and distribution architectures
  • Real‑time fault detection and reporting

Monitoring and Integration:

  • Detailed event logs and health metrics
  • Timing performance graphs
  • Real‑time alerts via SNMP traps and email
  • Integration through SNMP (v1/v2c/v3) and REST API
  • Front‑panel OLED display and indicators for local diagnostics

High‑Precision Holdover with Advanced Oscillator Options

SecureSync 2400 supports a wide range of internal oscillators, allowing customers to balance cost, performance, and resilience, including:

  • TCXO
  • Medium Stability Oscillator (MSO)
  • High Stability Oscillator (HSO)
  • Low Phase Noise OCXO
  • Rubidium and Low Phase Noise Rubidium

The improved oscillator variants introduced in the April 2026 update significantly enhance holdover accuracy during GNSS interruptions—an essential requirement for resilience‑driven regulations.

Rugged Platform for Critical Environments

SecureSync 2400 is engineered for harsh operational conditions:

  • Operating temperature: ‑20 °C to +65 °C (Rubidium up to +55 °C)
  • Compliance with MIL‑STD‑810H shock and vibration profiles
  • Certified to CE, UKCA, FCC Class A, RoHS, REACH, WEEE
  • Five‑year limited warranty for long‑term confidence