A CKMS component that performs one or more of the following functions: The acquisition or generation of public key certificates, The initial establishment of keying materials (including its generation and distribution), The maintenance of a database that maps end entities to an organization's certificate/key structure, Key backup, archiving, inventory or recovery, The maintenance and distribution of key compromise lists and/or certificate revocation lists (i.e., Revoked Key Notifications), and The generation of audit requests and the processing of audit responses as necessary for the prevention of undetected compromises.
Source(s):
NIST SP 800-57 Part 2 Rev.1
under Key processing facility
The Key Processing Facility is a KMI component that performs one or more of the following functions:
• Acquisition or generation of public key certificates,
• Initial generation and distribution of keying material,
• Maintenance of a database that maps user entities to an organization’s certificate/key structure,
• Maintenance and distribution of nodal key compromise lists and/or certificate revocation lists, and
• Generation of audit requests and the processing audit responses as necessary for the prevention of undetected compromises.
Source(s):
NIST SP 800-57 Part 2
under Key processing facility
[Superseded]