💼 3.6.5 Retirement or replacement of keys as deemed necessary when the integrity of the key has been weakened, or keys are suspected of being compromised.
- ID:
/frameworks/pci-dss-v3.2.1/03/06/05
Description​
If retired or replaced cryptographic keys need to be retained, these keys must be securely archived (for example, by using a key-encryption key). Archived cryptographic keys should only be used for decryption/verification purposes.
Similar​
- Sections
/frameworks/pci-dss-v4.0/03/07/05
- Internal
Similar Sections (Take Policies From)​
Similar Sections (Give Policies To)​
Sub Sections​
| Section | Sub Sections | Internal Rules | Policies | Flags | Compliance |
|---|