A Framework for Designing Cryptographic Key Management Systems
Elaine B. Barker, Miles E. Smid, Dennis Keith Branstad, Santosh Chokhani · 2013
This Framework for Designing Cryptographic Key Management Systems (CKMS) contains topics that should be considered by a CKMS designer when developing a CKMS design specification. For each topic there are one or more documentation requirements that need to be addressed by the design specification. Thus, any CKMS that adequately addresses these requirements would have a design specification that is compliant with this Framework. Certain commercial entities, equipment, or materials may be identified in this document in order to describe an experimental procedure or concept adequately. Such identification is not intended to imply recommendation or endorsement by the National Institute of Standards and technology, nor is it intended to imply that the entities, materials, or equipment are necessarily the best available for the purpose. KEY WORDS: access control; confidentiality; cryptographic key management system; cryptographic keys; disaster recovery; framework; integrity; key management functions; key management policies; key management profiles; key metadata; security assessment; source authentication; system testing.