Skip to main content

SID-CRYPTO-05 — Secure Random Number Generation

PropertyValue
Ownerplatform
Categorytechnical
CSF Functionprotect
GroupCryptography Controls

Description

Cryptographic nonce generation using crypto/rand (Go) and WebCrypto API (crypto.getRandomValues). Base64url encoding with configurable byte length. Admin tokens: 32-byte hex-encoded. PBKDF2 salts: 32-byte random.

Components

Source References

Framework Requirements

EUDI Security Requirements: GEN-7.5-02, WIN-8.4.1-Sec-04, WIN-8.4.4-02

FitCEM Wallet Instance: FIT-CR-01

ISO 27001 Annex A: A.8.24

OWASP ASVS 4.0.3 Level 3: V1.6, V6.2, V6.3