Cloud Key Management

Meeting Minutes November 1st, 2023.

  • 1.  Meeting Minutes November 1st, 2023.

    Posted Nov 10, 2023 07:35:00 AM
    Edited by Marina Bregkou Nov 10, 2023 07:58:41 AM

    Dear members,

    Below you can find the meeting minutes from our working group call on the 1st of November.

    Minutes:

    • The group went through the last comments of the HSM document, discussed and resolved them. Document finished its first draft and is now open for peer review.
    • The Key Mgmt Lifecycle Best Practices document concluded its peer review on the 26th of October.
    • During the call we went through some of the feedback that has been already provided through the peer review process in order to show how the authors are to address the feedback provided.

    Previous action items: 

    Document: HSM-as-a-Service:

    • Sam to review section 7.2 and section 8. Key Mgmt Considerations. - DONE
    • Sam to re-write the intro paragraph in section 6, page 44. - DONE
    • Marina to map the CCM domains to the items of the table of physical and logical controls in page 45, section 6. - DONE

    New action items:

    Document: HSM-as-a-Service:

    • Sam ( @Sam Pfanstiel) to update the Purpose or Scope section with some bullet points that prove WHY chose HSM and what are the benefits (versus something else for example).

    Document: Key Management Lifecycle Best Practices:

    • Working group to go through the last comments provided by the peer review process. Specifically:
      • Partha to address comment in section 2. Key Mgmt Refresher, section 2.3.1 page 11 and in page 16.
      • Alex ( @Alex Sharpe) to address comments in 2.1 Encryption Overview, 2.2.1 Crypto Agility, 2.3 KMS Overview, 3.1 Lifecycle overview.
      • Santosh ( @Santosh Bompally) to address comments in 2.5.1, 2.6 page 15, 3.2.1 Key Generation, 3.2.3 Key Storage section
      • Sunil ( @Sunil Arora) to address the comments provided in section 2.6 page 15, 3.2.2 Key Distribution and 3.2.5 Key Backup&Recovery,
      • Marina to address comments in Key Destruction, Key Rotation and Key Usage State.

    Next working group call: 15 November

    Time: 08:00 a.m. PST / 11:00 a.m. EST / 16:00 GMT / 18:00 EET

    URL: https://zoom.us/j/93617880747  (Meeting ID: 936 1788 0747)

    Kind regards,

    Marina



    ------------------------------
    Marina Bregkou,
    Senior Research Analyst,
    CSA
    ------------------------------