How are Encryption Keys derived and maintained?

Article ID: 53969

Article Type: Frequently Asked Question

Last Modified:

Commvault utilizes the CTR_DRBG random number generator for generating encryption keys. Additionally, the software uses diverse random data supplied by the operating system to provide a dynamic seed for the random number generator.

The software generates the keys as follows:

The software employs the AES Key Wrap Specification for securely encrypting encryption keys, storing them in the CommServe database with embedded CRC32 checksums. Only CRC32 is utilized for verifying key entry accuracy. If an error is detected, the software prompts the user to investigate potential network or media issues.

Refer to Key Lifecycle section in the documentation to understand key management for different types of encryptions.

1 Commvault Way, Tinton Falls, NJ 07724 Sitemap | Legal Notices | Trademarks | Privacy Policy
Copyright © Commvault | All Rights Reserved.