Cryptoperiod

A cryptoperiod is the time span during which a specific cryptographic key is authorized for use. Common government guidelines[1] range from 1 to 3 years for asymmetric cryptography,[2] and 1 day to 7 days for symmetric cipher traffic keys.[3]

Factors to consider include the strength of the underlying encryption algorithm, key length, the likelihood of compromise through a security breach and the availability of mechanisms of revoking keys.

In traditional cryptographic practice, keys were changed at regular intervals, typically at the same time each day. The code word for a key change, in NSA parlance, is HJ or Hotel Juliet in the NATO phonetic alphabet.[4][5]

When cryptographic devices began to be used in large scale, those who had to update the key had to set a specific time to synchronize the re-key. This was accomplished at the hour (H) the Julian (J) Date changed, among crypto-accountants, managers and users the jargon "HJ" became the accepted term meaning it was time to change the crypto-key.[citation needed]

  1. ^ NIST Special Publication 800-57 Part 3 Revision, Recommendation for Key Management, Part 3: Application-Specific Key Management Guidance
  2. ^ "Keylength - NIST Report on Cryptographic Key Length and Cryptoperiod (2020)".
  3. ^ "CSEC: Cryptographic Algorithms". Archived from the original on 2011-06-17. Retrieved 2011-05-02.
  4. ^ "Telecommunications Handbook". U.S. Department of State Foreign Affairs. December 2010. Retrieved 2016-01-12.
  5. ^ "Common Crypto Terms".