Introduction

The IBM Crypto Analytics Tool (CAT) is part of the IBM Enterprise Key Management Foundation EKMF) and has been developed to help provide up-to-date monitoring of crypto related information on the z Systems in the enterprise. CAT is designed to combine and present crypto information in a way that helps ensure compliance and policy enforcement. The CAT Agent collects cryptographic information across the enterprise that is then made available to the CAT Monitor running on your desktop. The CAT Monitor provides overviews, queries and reports to better manage the cryptographic setup.

Purpose

CAT is designed to provide fast, reliable crypto information to help people in different roles of the organization make qualified decisions about crypto systems. CAT collects cryptographic information from across the enterprise and ensures that each crypto system is following best practices by providing:

  • A comprehensive overview of the cryptographic security of the system.
  • Up-to-date monitoring of crypto keys and functions.
  • Key data for better policy and compliance enforcement.
  • Awareness if key material used in testing has leaked into production environments.
  • A comparison of the current crypto state with a previous 'snapshot' for error and problem determination or change control validation.

Advantages

Using CAT can help when dealing with managing complex cryptography resources across an organization in three key areas; control, up-to-date view of current system status, and compliance. CAT is designed to address each of these challenges;

  • Control: Understand which applications are using particular cryptographic functions and keys.
  • Up-to-date view: Monitor the keys and functions that are being used by people and applications, as well as identify and highlight potential security issues.
  • Compliance: Help ensure that the systems meet regulatory compliance standards and track system changes.

User friendly solution

CAT offers IBM System z users an overview that combines data from all of an organizations crypto systems in an easy-to-review format. The data gathered through CAT can help to better focus in crypto policy issues; easily see changes made within the crypto system and complete crypto problem analysis. These capabilities can be especially useful for auditors who need to verify and document ongoing compliance within the crypto system.

Highlights

  • Offers a comprehensive data view of the cryptographic security on the system.
  • Allows monitoring to ensure that programs, keys and cryptographic functions are set up and protected, complying with best practices.
  • Eases policy and compliance enforcement.
  • Helps Administrators understand weaknesses and gaps to prioritize improvements.
  • Awareness if key material used in testing has leaked into production environments.
  • Offers a comparison of the current crypto state with a previous "snapshot" for error and problem determination or change control validation.

Ready to buy or need more information?