- Home
- All questions
- Question 233
CISSP study material · question 233 of 500
A key management policy uses the word cryptoperiod without defining it. Which definition matches NIST SP 800-57 Part 1?
Show the answer
Answer: C. The span of time during which a particular key is authorised for use by legitimate entities or remains in effect for a system.
A cryptoperiod is the span in which a specific key is authorised for use by legitimate parties, or in which a system's keys remain in effect.
Source: NIST SP 800-57 Part 1 Rev. 5 (NIST) — SP 800-57 Part 1 Rev. 5 > 5.3 Cryptoperiods