PKI Framework

Existence of adequate physical security

 

Physical security controls, including:

  • Site location and construction
  • Physical access controls, including authentication controls to control and restrict access to CA facilities
  • Power and air conditioning
  • Water exposures
  • Fire prevention and protection
  • Media storage
  • Waste disposal
  • Off-site backup

Physical and Environmental Security

The Certification Authority maintains controls to provide reasonable assurance that physical access to CA facilities is limited to properly authorized individuals and CA facilities are protected from environmental hazards.

 

The Certification Authority maintains controls to provide reasonable assurance that loss, damage, or compromise of assets and interruption to business activities are prevented.

 

The Certification Authority maintains controls to provide reasonable assurance that compromise or theft of information and information processing facilities are prevented.

 

System Access Management

The Certification Authority maintains controls to provide reasonable assurance that CA system access is limited to properly authorized individuals.