InvestorsHub Logo
Followers 14
Posts 1871
Boards Moderated 0
Alias Born 01/21/2008

Re: wavedreamer post# 239926

Tuesday, 11/25/2014 1:43:11 PM

Tuesday, November 25, 2014 1:43:11 PM

Post# of 249561
Also:

Keep your eye on the FEDRAMP Cloud Initiative by the US Federal Gov.

One of the Controls is "Cryptographic Module Authentication, IA-7"
and the device authenticating to the cloud server must use a FIPS 140 approved cryptographic Module. The Atmel and Novoton TPM and Infineon TPM in for approval will qualify. The NIAP TPM PP will define many other TPM forms.

"FIPS 140-2 Validated Cryptography for Secure Communications 29
The FedRAMP security control baseline includes IA-7,
SC-8(1), SC-9(1), SC-13, and SC-13(1) all of which require 30 cryptographic mechanisms to prevent unauthorized disclosure of information during transmission unless 31 otherwise protected by alternative physical measures. If agency requirements stipulate FIPS 140-2 validated 32 cryptography be used from the agency to the cloud service provider, that should be specified."

http://www.gsa.gov/graphics/staffoffices/FedRAMP_Control_Specific_Clauses_062712.pdf

Join InvestorsHub

Join the InvestorsHub Community

Register for free to join our community of investors and share your ideas. You will also get access to streaming quotes, interactive charts, trades, portfolio, live options flow and more tools.