[98232] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

Re: New DoD encryption mandate

daemon@ATHENA.MIT.EDU (Ed Gerck)
Wed Aug 15 21:53:08 2007

Date: Wed, 15 Aug 2007 18:32:10 -0700
From: Ed Gerck <edgerck@nma.com>
To: Charles Jackson <clj@jacksons.net>
Cc: "'Steven M. Bellovin'" <smb@cs.columbia.edu>,
	cryptography@metzdowd.com
In-Reply-To: <03c401c7df4d$11372150$a000a8c0@clj3>

The first is simply a MSFT Vista requirement for BitLocker file
encryption. The second is for example present in ACER laptops
(Aspire 5920) as eLock -- it allows you to protect and then
unlock storage devices that can be mounted as a file system when
plugged into the trusted system (the laptop), or keep them locked
otherwise.

> Also interesting is the requirement that all DOD computers include TPM (1.2
> or higher).  See next to last paragraph of the memorandum at
> http://iase.disa.mil/policy-guidance/dod-dar-tpm-decree07-03-07.pdf 

> According to http://www.fcw.com/article103467-08-13-07-Print the US
> Defense Department has mandated that all sensitive but unclassified
> information on mobile devices must be encrypted in compliance with FIPS
> 140-2.  "Mobile devices" include laptops, PDAs, CDs, flash drives, etc.

---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com

home help back first fref pref prev next nref lref last post