UCF STIG Viewer Logo

Applications involved in the production, control, and distribution of symmetric cryptographic keys must use NIST-approved or NSA-approved key management technology and processes.


Overview

Finding ID Version Rule ID IA Controls Severity
V-32494 SRG-APP-000192-DB-NA SV-42831r1_rule Medium
Description
Cryptographic key management and establishment can be performed using manual procedures or automated mechanisms with supporting manual procedures. In addition to being required for the effective operation of a cryptographic mechanism, effective cryptographic key management provides protections to maintain the availability of the information in the event of the loss of cryptographic keys by users. This requirement is specific to key management systems. This requirement is NA for databases.
STIG Date
Database Security Requirements Guide 2012-07-02

Details

Check Text ( C-40932r1_chk )
This check is NA for databases.
Fix Text (F-36409r1_fix)
This fix is NA for databases.