DoD STIGs – V-32495


Title: Applications involved in the production, control, and distribution of symmetric and asymmetric cryptographic keys must use NIST-approved or NSA-approved key management technology and processes.

Vulnerability ID: V-32495


IA Controls: None

Severity: medium

Description: Cryptographic key management and establishment can be performed using manual procedures or automated mechanisms with supporting manual procedures.

In addition to being required for the effective operation of a cryptographic mechanism, effective cryptographic key management provides protections to maintain the availability of the information in the event of the loss of cryptographic keys by users.

This requirement is applicable to applications involved in the production, control, and distribution of asymmetric cryptographic keys and is NA for databases.

Check Text: This check is NA for databases.

Fix Text: This fix is NA for databases.


Interpreting V-32495:

Coming Soon!

Return to the DoD STIGs – Database Security Requirements Guide

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.