Cryptographic Inventory and Agility
Each cryptographic migration (or sub-migration) effort requires a great deal of hands-on / manual engineering to perform, which takes time. The natural solution is to leave “breadcrumbs” during a migration effort, amortizing the cost of the current effort, so that future migrations occur with more ease. This workstream will aim to establish standards for these “metadata breadcrumbs,” develop automated tools to make use of them, and demonstrate proof-of-concepts.
Goals
emplate for CBOM & Crypto Agility & Modular Cryptography workstream, with loose goals of:
- Maturing CBOM to fit more use-cases/etc.
- Mapping CBOM usage to an example network topology.
- Producing a demonstration / proof-of-concept exercise showing how CBOM can enhance Algorithm Discovery Tools on an actual network.
- Developing further software tools to perform Crypto Agility / Modular Crypto hot-swaps based on a matured CBOM + Discovery Tool toolbase
- Articulate connections to SBOM.
Impact
TBD