💼 SC-12(3) Cryptographic Key Establishment and Management | Asymmetric Keys
- ID:
/frameworks/nist-sp-800-53-r5/sc/12/03
Stats
not available
Description
Produce, control, and distribute asymmetric cryptographic keys using [Selection: NSA-approved key management technology and processes; prepositioned keying material; DoD-approved or DoD-issued Medium Assurance PKI certificates; DoD-approved or DoD-issued Medium Hardware Assurance PKI certificates and hardware security tokens that protect the user's private key; certificates issued in accordance with organization-defined requirements].
Similar
- Sections
/frameworks/aws-fsbp-v1.0.0/api-gateway/02/frameworks/aws-fsbp-v1.0.0/cloudfront/03/frameworks/aws-fsbp-v1.0.0/cloudfront/07/frameworks/aws-fsbp-v1.0.0/cloudfront/08/frameworks/aws-fsbp-v1.0.0/cloudfront/10/frameworks/aws-fsbp-v1.0.0/elasticache/05/frameworks/aws-fsbp-v1.0.0/elb/01/frameworks/aws-fsbp-v1.0.0/elb/02/frameworks/aws-fsbp-v1.0.0/elb/03/frameworks/aws-fsbp-v1.0.0/elb/08/frameworks/aws-fsbp-v1.0.0/elb/17/frameworks/aws-fsbp-v1.0.0/es/08/frameworks/aws-fsbp-v1.0.0/opensearch/08/frameworks/aws-fsbp-v1.0.0/s3/05
- Internal
- ID:
dec-c-dc1b6604
- ID:
Similar Sections (Take Policies From)
Sub Sections
| Section | Sub Sections | Internal Rules | Policies | Flags | Compliance |
|---|
Policies (10)
| Policy | Logic Count | Flags | Compliance |
|---|---|---|---|
| 🛡️ AWS API Gateway REST API Stage is not configured to use an SSL certificate for authentication🟢 | 1 | 🟢 x6 | no data |
| 🛡️ AWS CloudFront Web Distribution Cache Behaviors allow unencrypted traffic🟢 | 1 | 🟢 x6 | no data |
| 🛡️ AWS CloudFront Web Distribution uses default SSL/TLS certificate🟢 | 1 | 🟢 x6 | no data |
| 🛡️ AWS CloudFront Web Distribution uses Dedicated IP for SSL🟢 | 1 | 🟢 x6 | no data |
| 🛡️ AWS CloudFront Web Distribution uses outdated SSL protocols with Custom Origins🟢 | 1 | 🟢 x6 | no data |
| 🛡️ AWS ElastiCache Replication Group is not encrypted in-transit🟢 | 1 | 🟢 x6 | no data |
| 🛡️ AWS ELB Application Load Balancer is not configured to redirect HTTP to HTTPS🟢 | 1 | 🟢 x6 | no data |
| 🛡️ AWS ELB Load Balancer listener is configured with an outdated security policy🟢 | 1 | 🟢 x6 | no data |
| 🛡️ AWS OpenSearch Domain is not encrypted with the latest TLS policy🟢 | 1 | 🟢 x6 | no data |
| 🛡️ AWS S3 Bucket Policy is not set to deny HTTP requests🟢 | 1 | 🟢 x6 | no data |