[Cloud Computing]Mechanisms: Cryptographic Key Management System

来源:互联网 发布:广东干部培训网络考试 编辑:程序博客网 时间:2024/05/03 19:18

Cryptographic Key Management System


The cryptographic key management system (CKMS) consists of policies, procedures, components and devices that are used to protect, manage, and distribute cryptographic keys and certain specific information, called metadata. A CKMS includes all devices or sub-systems that can access an unencrypted key or its metadata. Encrypted keys and their cryptographically protected metadata can be handled by computers and transmitted through communications systems and stored in media that are not considered to be part of a CKMS.


Figure 1 - An example of a CKMS using split key administration.

Figure 1 shows a CKMS managing the organization's keys. Many industry regulations require organizations to control their own keys, which can be done on-premise or from a trusted third-party service. It shows the requirement for multiple administrators to accomplish management tasks requiring multiple split keys to perform a cryptographic operation.

Related Patterns:

  • Cloud Data Breach Protection
  • Cloud Key Management
  • Cloud Storage Data at Rest Encryption
  • Cloud Storage Device Masking
  • Cloud Traffic Hijacking Protection
  • Cloud VM Platform Encryption
  • In-Transit Cloud Data Encryption
  • Permanent Data Loss Protection
0 0
原创粉丝点击