Describes the ordering, generation, distribution, and validation of cryptographic key material for systems and equipment requiring key material, based on the Key and Certification Management Plan.
The Key Specification (KS) describes the ordering, generation, distribution, and validation of the key material.
a. Key Generation: The KS should designate and describe all types, uses and formats of key required by the application. The KS should also describe the data format, encryption algorithms, parity, checkword algorithms, data constraints, and relationships of one cryptographic application key to another.
b. Key Distribution/Consumption: The KS should describe the type of key and Meta data or fill object the equipment/system will consume. The KS should tailor the mission key and supporting delivery data standards selected from the electronic key delivery references (Electronic Key Management System (EKMS) and Key Management Infrastructure (KMI)) for consumption by the equipment/system based on the Key and Certification Management Plan (KCMP). Note: Over-the-Network Keying is the recommended solution to ensure mission key confidentiality and integrity through distribution and use to ultimate destruction.
c. Key Validation: The KS should contain the results of associated tests to verify that the cryptographic key validation material received agree with the cryptographic key requirements stipulated in the KCMP and KS for the equipment/system. It details the test requirements, describes the tests performed and provides the associated test results and analysis. It is used by the Government to indicate format, function and compatibility acceptance of the cryptographic key software, developed from KS submittal, and resulting key material for use in the equipment/system.
d. This Data Item Description (DID) contains format and content preparation instructions for the data product generated by the specific and discrete task requirement as delineated in the legal agreement, as the KS.
e. This DID is applicable to systems and equipment requiring cryptographic key material.
f. This DID is related to the Tailored Security Design and Analysis Requirements Specification.
g. This DID supersedes prior reference to DI-MISC-80508B titled Technical Report-Study/Services.

Figure 1. Key Specification Template, Version 1.0 - Title Page

Figure 2. Key Specification Template, Version 1.0 - Approvals and Revision History

Figure 3. Key Specification Template, Version 1.0 - Table of Contents

Figure 4. Key Specification Template, Version 1.0 - Sections 1 Introduction through 4.1.1 Key Format Example

Figure 5. Key Specification Template, Version 1.0 - Sections 4.2 Key Parity through 6.1 Key Production

Figure 6. Key Specification Template, Version 1.0 - Sections 6.1.1 Production Constraints through 7 Distribution

Figure 7. Key Validation Report Appendix Template, Version 1.0 - Title Page

Figure 8. Key Validation Report Appendix Template, Version 1.0 - Table of Contents

Figure 9. Key Validation Report Appendix Template, Version 1.0 - Sections A.1 Introduction through A.3.1.4

Figure 10. Key Validation Report Appendix Template, Version 1.0 - Sections A.3.2 through A.7 Validation Signatory