19.12.2012 Views

IT Baseline Protection Manual - The Information Warfare Site

IT Baseline Protection Manual - The Information Warfare Site

IT Baseline Protection Manual - The Information Warfare Site

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Threats Catalogue Deliberate Acts Remarks<br />

____________________________________________________________________ .........................................<br />

T 4.34 Failure of a cryptomodule<br />

If you use a cryptomodule to protect the confidentiality of data that needs to<br />

be protected, it is particularly important that the cryptomodule functions<br />

perfectly. <strong>The</strong> failure of a cryptomodule used in such a way can have various<br />

causes:<br />

- a technical error which impairs the module's ability to function,<br />

- a power cut following which the cryptographic codes stored in volatile<br />

memory are deleted, so that the cryptomodule is no longer able to encode<br />

properly,<br />

- intentional or unintentional destruction through mechanical influence,<br />

improper use or similar actions.<br />

<strong>The</strong> failure of a cryptomodule can also result in various types of damage. Of<br />

particular interest are:<br />

- It is no longer possible to protect a data transmission path using<br />

cryptographic procedures, making it temporarily impossible to preserve the<br />

confidentiality of the data. This is particularly critical if the failure is not<br />

noticed and, as a result of the malfunction, data is no longer encoded,<br />

although the users rely on the cryptomodule to guarantee that the data is<br />

confidential.<br />

- Encoded data can no longer be decoded until the required cryptomodule<br />

becomes available again. This can lead to problems in the availability of <strong>IT</strong><br />

applications which process the decoded data.<br />

- If the cryptomodule ceases to work correctly but does not completely fail,<br />

data is encoded incompletely or incorrectly. In both cases, it can mean that<br />

the recipient (if the data is transmitted) or the user (if the data is stored<br />

locally) can no longer decode the data correctly. Without suitable data<br />

backup, this could mean that all of the data is lost.<br />

____________________________________________________________________ .........................................<br />

<strong>IT</strong>-<strong>Baseline</strong> <strong>Protection</strong> <strong>Manual</strong>: Oktober 2000

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!