5.2 Index of Security Parameters

Security Parameter

Section

Client device encryption public key

1.3.2, 3.1.2, 2.2.3.19.1, 3.2.5.2.2.2, 3.3.5.2.2.2

Client device encryption private key

3.3.1

Client device signature public key

1.3.2, 2.2.3.19.1, 3.2.5.2.2.2, 3.3.5.2.2.2

Client device signature private key

1.3.2, 1.4, 3.3.5.2.2.6

Identity and contact encryption public key

2.2.2.2.6, 3.1.2, 3.2.5.1.6

Identity encryption private key

3.3.1

Identity and contact signature public key

2.2.2.2.6

Identity signature private key

3.2.5.2.2.3

Account encryption public key

1.3.2, 2.2.3.19.1, 3.1.2, 3.2.5.2.2.2, 3.3.5.2.2.2

Account encryption private key

3.3.1

Account signature public key

1.3.2, 2.2.3.19.1, 3.2.5.2.2.2, 3.3.5.2.2.2, 3.3.5.2.2.6

Account signature private key

1.3.2 , 1.4

Management domain encryption public key

1.3.2, 1.4, 2.2.3.42.1, 3.1.3, 3.1.4, 3.2.1, 3.3.1, 3.3.5.2.2.3

Management domain encryption private key

1.3.2, 3.1.4, 3.2.1, 3.2.5.2.2.3

Management domain signature public key

2.2.2.2.10.6, 3.1.4, 3.2.1, 3.2.5.1.4, 3.3.1

Management domain signature private key

3.1.4, 3.2.1, 3.2.5.1.4

Management domain data recovery encryption public key

2.2.3.13.1, 3.1.3, 3.2.1, 3.3.1

Management domain data recovery encryption private key

3.2.1, 3.2.5.1.6, 3.2.5.6.3

Management domain data recovery signature public key

3.2.1, 3.3.1

Management domain data recovery signature private key

3.2.1

Management domain audit encryption public key

3.1.3, 3.1.4, 3.2.1, 3.3.1

Management domain audit encryption private key

3.1.4, 3.2.1

Management domain audit signature public key

3.1.4, 3.2.1, 3.3.1

Management domain audit signature private key

3.1.4, 3.2.1

Secret key shared between the client device and the management domain

1.3.1.11, 1.3.2, 1.4 2.2.3.19.1, 3.1.4, 3.1.5.1, 3.1.5.5, 3.1.6.1, 3.1.6.6, 3.2.1, 3.2.5.1.2, 3.2.5.2.2, 3.2.5.2.2.2, 3.2.5.2.2.3, 3.3.1, 3.3.5.1.2.2, 3.3.5.1.2.5, 3.3.5.2.2, 3.3.5.2.2.1, 3.3.5.2.2.3, 3.3.5.2.2.9

Secret key shared between the account and the management domain

1.3.1.11, 1.3.2, 1.4, 2.2.3.19.1, 3.1.4, 3.1.5.1, 3.1.5.5, 3.1.6.1, 3.1.6.6, 3.2.1, 3.2.5.1.1, 3.2.5.2.2, 3.2.5.2.2.2, 3.2.5.2.2.3, 3.3.1, 3.3.5.1.2.2, 3.3.5.1.2.5, 3.3.5.2.2, 3.3.5.2.2.1, 3.3.5.2.2.3, 3.3.5.2.2.9

Secret key shared between the account and the management domain for the purpose of account configuration

1.3.2, 1.4, 3.1.5.1, 3.1.5.5, 3.1.6.1, 3.1.6.6, 3.2.5.1.2, 3.3.5.1.1.1, 3.3.5.1.1.6, 3.3.5.2.3

Secret key shared between the account and the management domain for the purpose of audit

2.2.3.5.1, 3.1.4, 3.2.1

Secret key used to encrypt individual chunks of the audit log

2.2.3.5.1, 2.2.3.30.1, 3.1.4

Secret key encryption algorithm for non-audit related purposes

3.1.1, 3.1.4, 3.1.5.5, 3.1.6.6, 3.2.1, 3.3.5.2.2, 3.3.5.2.2.1, 5.1

Secret key encryption algorithm used for audit and automatic password reset

3.1.4, 3.2.1, 3.2.5.6.3

Management domain public key encryption algorithm

3.1.3, 3.1.4, 3.2.1, 3.2.5.1.6, 3.2.5.2.2.3, 3.3.5.2.2.3

Account, identity, and contact public key encryption algorithm

2.2.2.2.6, 2.2.3.19.1, 3.1.2, 3.2.5.1.6, 3.2.5.2.2.2, 3.3.5.2.2.2, 5.1

Signature algorithm

2.2.2.2.6, 2.2.3.19.1, 3.1.3, 3.1.4, 3.2.1, 3.2.5.1.4, 3.2.5.2.2.2, 3.2.5.2.2.7, 3.2.5.2.3, 3.3.1, 3.3.5.2.2.2, 3.3.5.2.2.6

Hash algorithm

2.2.2.2.6, 2.2.2.2.10.6, 2.2.3.5.1, 2.2.3.13.1, 2.2.3.42.1, 3.1.3, 3.1.5.4, 3.1.6.7, 3.2.1, 3.2.5.1.4, 3.2.5.1.6, 3.2.3, 3.2.5.2.2.6, 3.2.5.6.3, 3.3.5.1.1.1, 3.3.5.1.1.3, 3.3.5.2.1.1, 3.3.5.2.2.5, 5.1

HMAC algorithm

3.1.4, 3.1.5.6, 3.1.6.8, 3.2.5.6.3, 5.1

Password-based key derivation function

3.2.5.6.3

Initialization vector

2.2.2.2.22, 2.2.2.3, 2.2.2.3.15, 2.2.3.5.1, 2.2.3.14.1, 2.2.3.30.1, 3.1.1, 3.1.5.5, 3.1.5.7, 3.1.6.2, 3.1.6.6, 3.2.5.6.3, 4.1.1, 4.2.1, 4.4.1, 4.4.2, 4.5

Message signature

1.3.2, 2.2.3.19.1, 2.2.3.6.1, 2.2.3.8.1, 2.2.3.19.1, 2.2.3.31.1, 3.1.4, 3.2.5.2.2.2, 3.2.5.2.2.7, 3.2.5.2.3, 3.3.5.2.2.6

Managed object signature

2.2.2.2, 2.2.2.2.10.1, 2.2.2.2.10.2, 2.2.2.2.10.3, 2.2.2.2.10.4, 2.2.2.2.10.5, 2.2.2.2.10.6, 2.2.2.2.10.7, 2.2.2.2.10.8, 2.2.2.2.13, 3.2.5.1.4

Message HMAC

2.2.2.2.22, 2.2.2.3, 2.2.2.3.16, 2.2.3.5.1, 2.2.3.14.1, 2.2.3.30.1, 3.1.4, 3.1.5.6, 3.1.5.8, 3.1.6.3, 3.1.6.8, 3.2.5.6.3, 4.1.1, 4.2.1, 4.4.1, 4.4.2, 4.5