Key management

Key management is a term used to describe two different fields; (1) cryptography, and (2) physical key management (or electronic key management) within building or campus access control.

In cryptography, key management includes all of the provisions made in a cryptosystem design, in cryptographic protocols in that design, in user procedures, and so on, which are related to generation, exchange, storage, safeguarding, use, vetting, and replacement of keys. There is a distinction between key management, which concerns keys at the users' level (i.e., passed between systems or users or both), and key scheduling which is usually taken to apply to the handling of key material within the operation of a cipher.

When referring to access control, electronic key management (physical key management)refers to a system for managing the possession, location and use of mechanical (physical keys) within a building or campus, to aid in security and operations efficiency.

Appropriate and successful key management is critical to the secure use of every crypto system without exception. It is, in actual practice, the most difficult aspect of cryptography generally, for it involves system policy, user training, organizational and departmental interactions in many cases, coordination between end users, etc.

Many of these concerns are not limited to cryptographic engineering and so are outside a strictly cryptographic brief, though of critical importance. As a result, some aspects of key management fall between two stools as the cryptographers may assume this or that aspect is the responsibility of the using department or upper management or some such, while said department or upper management regard it all as being outside their concerns because 'technical', and so within the purview of the cryptographers.

ee also

* Public key infrastructure
* NSA's Electronic Key Management System (EKMS)
* Cryptographic key types
* Assorted list of cryptographic key types
* Physical key management(or electronic key management)

Organizations Supplying Key Management Solutions

* [ Safenet KeySecure, DataSecure and EdgeSecure Appliances] - Safenet DataSecure and Key Management Products (mainly for [Personally identifiable information PII] Protection as well as PCI DSS compliance)
* Bell ID - ANDiS Key Management System
* Futurex - [ Excrypt Key Management] Products
* [ nCipher] - keyAuthority Key Management Products
* Trusted Security Solutions, Inc.- Developers of the A98 initial ATM Key Establishment System.
* Voltage (company) - Voltage Security key management products (mainly for PCI DSS compliance)
* [ JSA Networks] - JSA Networks Key Management Server - Top Selling for PCI/CISP Compliance

External links

* "Recommendation for Key Management — Part 1: general," [ NIST Special Publication 800-57]
* [ NIST "Cryptographic Toolkit"]
* [ "The IEEE Security in Storage Working Group (SISWG) that is creating the P1619.3 standard for Key Management"]
* [ " Anerican National Standards Insitute] - ANSI X9.24, Retail Financial Services Symmetric Key Management

Wikimedia Foundation. 2010.

Look at other dictionaries:

  • key management — Those employees in senior positions in an organization who have authority for directing or controlling its major activities and resources …   Accounting dictionary

  • Key Management Service — Clé d activation du produit Pour les articles homonymes, voir VLK, MAK et KMS. Une clé d activation du produit est un code donné par une société éditrice de logiciels payants à ses clients pour leur permettre d activer leur produit. Sommaire 1… …   Wikipédia en Français

  • key management personnel — įmonės vadovas statusas Aprobuotas sritis buhalterinė apskaita ir finansinė atskaitomybė apibrėžtis Įmonės administracijos vadovas, valdybos, stebėtojų tarybos narys, kitas asmuo, turintys teisę planuoti ir kontroliuoti įmonės veiklą, jai… …   Lithuanian dictionary (lietuvių žodynas)

  • Key management facility —   An ISO term. A protected enclosure (e.g. room or cryptographic equipment) and its contents where cryptographic elements reside …   International financial encyclopaedia

  • Electronic key management — Electronic Key ManagementElectronic management of keys is an area of access control within the broader category of security. Typically, physical mechanical keys are managed electronically by a system which controls key access and also creates… …   Wikipedia

  • Internet Security Association and Key Management Protocol — ISAKMP (Internet Security Association and Key Management Protocol) is a protocol for establishing Security Associations (SA) and cryptographic keys in an Internet environment. The protocol is defined by RFC 2408. Overview ISAKMP defines the… …   Wikipedia

  • XML Key Management Specification — XKMS (XML Key Management Specification) est une spécification de validation et d enregistrement de clé publique utilisable de façon conjointe au signature XML et proposée notamment par Microsoft et Verisign au W3C. Sommaire 1 Objectifs 2… …   Wikipédia en Français

  • Simple Key-Management for Internet Protocol — or SKIP is a protocol developed by the IETF Security Working Group for the sharing of encryption keys.Skip is hybrid Key distribution protocol Simple Key Management for Internet Protocols (SKIP) is similar to SSL, except that it requires no prior …   Wikipedia

  • Internet Security Association and Key Management Protocol — ISAKMP im TCP/IP‑Protokollstapel: Anwendung ISAKMP Transport UDP TCP Internet IP (IPv4, IPv6) Netzzugang Ethernet …   Deutsch Wikipedia

  • Internet Security Association and Key Management Protocol — (ISAKMP) es un protocolo criptográfico que constituye la base del protocolo de intercambio de claves IKE. Está definido en el RFC 2408. ISAKMP define los procedimientos para la autenticación entre pares, creación y gestión de asociaciones de… …   Wikipedia Español

Share the article and excerpts

Direct link
Do a right-click on the link above
and select “Copy Link”

We are using cookies for the best presentation of our site. Continuing to use this site, you agree with this.