CONFORMANCE WITH LAWS AND STANDARDS

OBAKE complies with 56 different rules, standards and laws worldwide, being the best option to get secuity and governance certificates.

FUNCTION

NIST/FIPS (1)

ISO/IEC (2)

IETF/RFC (3)

 Others (4)

Encryption:


AESNI-AEAD-GCM, AES-CBC, AES-XTS, XSALSA-AEAD-POLY1305, CHACHA20-POLY1305

140.2

197

Suite-B

27000

27001

18000

18033-3

31000

5657

7693

8018

8221

8423

8439

8247

6318

HIPAA

ISACA

ITIL

BR-Law 23/2014

PCI-DSS

Google TLS-1.3

HASH (512-BIT)

202


7693


SANITIZING (WIPE)*

SP800-88

(Clear)

27001

27040

31000


DoD 5220.22M-ECE

NSA 130-1

UK GCHQ-HMG IS5-HS

BSI-2011-VS

CESG CPA – Hi LEVEL

NCSC-TG-025

OPNAVINST 5239.1A

AFSS-5020

ISACA

PDF ENCRYPTION AND DIGITAL SIGNATURE (PKCS#7)


19005

27001

31000

32000-1/2008

32000-2/2017

3852

5652

CAdES-ICP-Br

ICP-Br AD-RT

ESIGN-Act

UETA

eIDAS

CRF-21-Part 11

PASSWORDS AND 2FA



6238 (TOTP)

4226 (HOTP)


OAEP – Optimal Asymmetric Encryption Padding


10126

7816-4

3447


Password-Based Key Derivation Function v2

(PKCS#5/PBKDF#2)

SP800-132

SP800-63b


8018

2898


MS-CSRG

186.4

SP800-90




DSA-RSA (Signature)

1024, 2048, 4096, 8192

186.3


3447

HIPAA

ISACA

PCI-DSS

ITIL

RSA (Encryption)

1024, 2048, 4096, 8192

186.3

186.4


3447

HIPAA

ISACA

PCI-DSS

ITIL

1) NIST = National Institute of Standards and Technology - USA
FIPS = Fed.Info.Processing Standards Publications – NIST/USA
2) ISO = International Standards Organization
IEC = International Electrotechnical Commission
3) IETF/RFC = Internet Engineering Task Force/ Request for Comments
4-5) HIPAA = Health Insurance Portability and Accountability Act (USA)
ITIL = Information Technology Infrastructure Library
ISACA = Information Systems Audit and Control Association
UETA – Uniform Electronic Transaction Act (USA)
NSA = National Security Agency (USA)
DoD = Department of Defense (USA)
NCSC= National Computer Security Center da NSA (USA)
AFSS = Air Force System Security (USA)
CAdES = CMS Advanced Electronic Signatures
OPNAVINST = US NAVY Methodology
ICP-Br AD-RT = Digital Signature with Timestamp
ICP-Br = Brazilian PKI
eIDAS = Electronic Identification and Trust Services Regulation (CE)
ESIGN-Act = USA Digital Signatures Act
CRF-21-Part 11 = Code of Federal Regulations, Electronic Records, Electronic Signatures (USA)
TLS 1.3 – Transport Layer Security (HTTPS)
UK GCHQ HMG = United Kingdom Govern Communication Headquarters
CESG = Communications-Electronics Security Group, British Governmental group for digital sanitizing rules.
BSI=British Standards Institution (2011-VS is a standard created by the German Federal Office of Information Security - GFOIS)