Digital Forensics and Incident Response

OpenText Forensic Equipment

Acquire digital evidence in a reliable, defensible, and efficient way

 Digital forensic hardware tool

Overview

During evidence collection, changes to a storage device can occur, rendering collected evidence inadmissible in court or invalidating an investigation. Investigators need a solution that delivers rapid, accurate imaging that ensures evidence integrity.

OpenText™ Forensic Equipment is a portfolio of digital forensic hardware tools— including imagers, duplicators and write-blockers—designed to meet the rigorous demands of digital forensic investigations with integrity, reliability, and efficiency. Rapidly acquire data from a wide range of digital devices while preserving the chain of custody and maintaining compliance with legal and forensic standards.

Why OpenText Forensic Equipment?

OpenText Forensic Equipment provides a competitive advantage due to its tight integration with OpenText™ Forensic software, enterprise-level features, and emphasis on defensibility, scalability, and chain-of-custody fidelity.

  • 5x faster
    forensic imaging than previously available
    Rapidly extract files, review metadata, recover deleted content, and search for relevant evidence.
  • Easy
    intuitive, seamless workflows
    Streamline the acquisition of digital forensic evidence for investigators at all levels of expertise.
  • Portable
    tools that can acquire data no matter where you are
    Whether in the field or in the lab, OpenText Forensic Equipment ensures your ability to acquire evidence from a variety of device types.

Use cases

Capturing, preserving, and analyzing digital evidence without altering its original state is critical. OpenText forensic imagers, duplicators, and bridges (otherwise known as write blockers) play a foundational role in ensuring this integrity.

  • Maintain chain of custody and evidentiary integrity with the OpenText™ Forensic TX2 Imager to preserve original digital forensic data and ensure it isn’t modified during acquisition.

  • Create quick, forensically sound clones of suspect drives directly in the field with OpenText™ Forensic TD4 Duplicators to preserve evidence integrity on the spot.

  • Gather digital forensic evidence quickly when law enforcement or military teams seize multiple devices during a raid. Image multiple drives simultaneously with OpenText Forensic TD4 Duplicators to reduce acquisition time during sensitive operations.

  • Ensure analysts don’t inadvertently change or damage the original digital evidence by using a forensic write-blocker like OpenText™ Forensic Bridges to preserve digital artifacts during inspection.

    Key features

    OpenText forensic imagers, duplicators, and bridges form the backbone of forensically sound data collection and analysis, supporting law enforcement, cybersecurity teams, and legal professionals in maintaining the highest standards of evidence.

    Hashing capabilities in forensic imaging operations

    Delivers innovative tree hashing, breaking data streams into chunks that can be hashed individually, reducing evidence-acquisition times and improving the efficiency of digital evidence discovery.

    Wide device interface support

    Provides native connectivity to PCIe, USB, SATA, SAS, and network-based (ethernet) media, ensuring data from any device can be easily captured.

    Color, touch-screen interfaces

    Offers easy-to-use, intuitive user interfaces that save valuable investigative time with real-time drive and job status indicators.

    Hardware-based write blocking

    Blocks host system writes to avoid operating system behaviors and non-standard host interface drivers that can be prone to misuse and exploitation.

    LED activity status indicators

    Utilizes six LEDs to provide visible activity feedback, including DC in, power, host (connection), device (media detection), write-block status, and activity.

    Accelerate the value of OpenText Forensic Equipment

    Add-ons

    Extend the capabilities of your digital forensic investigations with additional digital forensic and incident response capabilities.

    Professional Services

    OpenText Professional Services combines end-to-end solution implementation with comprehensive technology services to help improve systems.

    Partners

    OpenText helps customers find the right solution, the right support, and the right outcome.

    Training

    OpenText Learning Services offers comprehensive enablement and learning programs to accelerate knowledge and skills.

    Communities

    Explore our OpenText communities. Connect with individuals and companies to get insight and support. Get involved in the discussion.

    Premium Support

    Optimize the value of your OpenText solution with dedicated experts who provide mission-critical support for your complex IT environment.

    OpenText Forensic Equipment resources

    OpenText Forensic TD4 Duplicator

    Read the product overview

    OpenText Forensic TX2 Image

    Read the product overview

    OpenText Forensic Bridges

    Read the data sheet

    OpenText Forensic TD4 Duplicator

    Read the product overview

    OpenText Forensic TX2 Image

    Read the product overview

    OpenText Forensic Bridges

    Read the data sheet
    • OpenText Forensic Imagers are high-performance forensic imaging devices that extract device data for investigation and support multiple interfaces like PCIe, USB, SATA, and SAS.

    • OpenText Forensic Duplicators are compact, budget-friendly tools for forensic duplication and triage.

    • A forensic bridge, otherwise known as a write-blocker, allows read-only access to a digital storage device. It prevents any write commands from reaching the source (evidence) drive and ensures the original data on the device is not modified in any way in order to maintain chain of custody.

    • OpenText Forensic Imagers create a bit-by-bit copy of a digital storage device vs. OpenText Forensic Duplicators that simply make a 1:1 physical copy. While duplicators perform a faster acquisition than their Imager counterparts, imagers provide additional data verification, ensuring evidential integrity.

    • Tableau was a market-leading brand known for its high-quality digital forensic hardware. After having been acquired by OpenText, the name was changed to OpenText Forensic Equipment, which consists of the OpenText TX2 Imager, OpenText TD4 Duplicator, and forensic bridges, adapters, and accessories.

    • The OpenText Forensic TX2 Imager is the next-generation forensic imager that provides significantly faster imaging operations when compared to the legacy TX1 Imager.

    • OpenText provides a series of forensic adapters that allow OpenText Forensic Equipment to connect to different drive interfaces (e.g., SATA, IDE, SAS, PCIe, mSATA, M.2 NVMe) as well as drives with different form factors (e.g., 2.5", 3.5", M.2).

    • OpenText Forensic Equipment integrates with forensic software platforms designed for data acquisition, analysis, and investigation. OpenText Forensic Equipment easily integrates with OpenText Forensic software for a more cohesive, efficient, and legally reliable forensic investigation process.

      Take the next step

      Ready to strengthen your forensic capabilities? Contact us today to explore the right OpenText Forensic Equipment for your team or request a customized demo.

      Contact us