AU-09.3 ยท Cryptographic Protection

Control Description

Implement cryptographic mechanisms to protect the integrity of audit information and audit tools.

Impact Baselines
Security baselines where this control applies
Not in any baseline
Control Properties
SP800-53-enhancement
system
Enhancement
Control Statement
The control requirements

Implement cryptographic mechanisms to protect the integrity of audit information and audit tools.

Supplemental Guidance

Cryptographic mechanisms used for protecting the integrity of audit information include signed hash functions using asymmetric cryptography. This enables the distribution of the public key to verify the hash information while maintaining the confidentiality of the secret key used to generate the hash.

Related NIST Controls
Other NIST 800-53 controls related to this one