ISM-1369

AES-GCM is used for encryption of TLS connections.

Topic
Configuring Transport Layer Security
Applicable to
all

History

Priority
should
Mar 2022
AES-GCM is used for encryption of TLS connections.
Miscellaneous changes were made to rationale and recommendations throughout the publication to clarify content without changing intent. This included a review from the Guidelines for System Hardening chapter through to the Guidelines for Data Transfers chapter.
Oct 2019
AES in Galois Counter Mode is used for symmetric encryption.
Security control 1369 was modified
Sep 2019
AES in Galois Counter Mode is used for symmetric encryption when available.
2015
Agencies should use AES–GCM for symmetric encryption when available.