Study. uk . com
  1. Home
  2. All questions
  3. Question 237

CISSP study material · question 237 of 500

A remote site distributes keys by hand, with occasional transcription errors. The security team proposes halving the cryptoperiod to improve safety. What does NIST SP 800-57 caution?

  1. Where manual distribution is error-prone, more frequent changes may raise exposure; fewer well-controlled distributions can be safer.
  2. Cryptoperiods may only be shortened when the key is used for storage rather than communications.
  3. Manual distribution invalidates any cryptoperiod, so the change is meaningless.
  4. Halving is the correct response, since short cryptoperiods are always safer.
Show the answer

Answer: A. Where manual distribution is error-prone, more frequent changes may raise exposure; fewer well-controlled distributions can be safer.

Where manual distribution invites human error, changing keys more often can raise exposure, so fewer well-controlled distributions may be the safer arrangement.

Source: NIST SP 800-57 Part 1 Rev. 5 (NIST) — SP 800-57 Part 1 Rev. 5 > 5.3.1 Factors Affecting Cryptoperiods

Challenge yourself on this topic → Study as cards