<?xml version="1.0" encoding="UTF-8"?>
<!-- generator="FeedCreator 1.8" -->
<?xml-stylesheet href="https://www.wvds.it/wiki/lib/exe/css.php?s=feed" type="text/css"?>
<rdf:RDF
    xmlns="http://purl.org/rss/1.0/"
    xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"
    xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
    xmlns:dc="http://purl.org/dc/elements/1.1/">
    <channel rdf:about="https://www.wvds.it/wiki/feed.php">
        <title>WvdS Doku - en:int:pqcrypt:szenarien:operator:disaster-recovery</title>
        <description></description>
        <link>https://www.wvds.it/wiki/</link>
        <image rdf:resource="https://www.wvds.it/wiki/lib/exe/fetch.php?media=wiki:dokuwiki.svg" />
       <dc:date>2026-05-22T20:30:44+00:00</dc:date>
        <items>
            <rdf:Seq>
                <rdf:li rdf:resource="https://www.wvds.it/wiki/doku.php?id=en:int:pqcrypt:szenarien:operator:disaster-recovery:ca-backup-restore&amp;rev=1769736542&amp;do=diff"/>
                <rdf:li rdf:resource="https://www.wvds.it/wiki/doku.php?id=en:int:pqcrypt:szenarien:operator:disaster-recovery:key-ceremony&amp;rev=1769736586&amp;do=diff"/>
                <rdf:li rdf:resource="https://www.wvds.it/wiki/doku.php?id=en:int:pqcrypt:szenarien:operator:disaster-recovery:notfall-revocation&amp;rev=1769736626&amp;do=diff"/>
                <rdf:li rdf:resource="https://www.wvds.it/wiki/doku.php?id=en:int:pqcrypt:szenarien:operator:disaster-recovery:start&amp;rev=1769736506&amp;do=diff"/>
            </rdf:Seq>
        </items>
    </channel>
    <image rdf:about="https://www.wvds.it/wiki/lib/exe/fetch.php?media=wiki:dokuwiki.svg">
        <title>WvdS Doku</title>
        <link>https://www.wvds.it/wiki/</link>
        <url>https://www.wvds.it/wiki/lib/exe/fetch.php?media=wiki:dokuwiki.svg</url>
    </image>
    <item rdf:about="https://www.wvds.it/wiki/doku.php?id=en:int:pqcrypt:szenarien:operator:disaster-recovery:ca-backup-restore&amp;rev=1769736542&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2026-01-30T01:29:02+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>CA Backup/Restore</title>
        <link>https://www.wvds.it/wiki/doku.php?id=en:int:pqcrypt:szenarien:operator:disaster-recovery:ca-backup-restore&amp;rev=1769736542&amp;do=diff</link>
        <description>CA Backup/Restore

Critical: CA keys are the most valuable asset of the PKI! 

RTO: 4 hours | RPO: 24 hours

Procedures for backing up and restoring CA keys and certificates.

----------

Backup Components
 Component  Criticality  Backup Frequency ---</description>
    </item>
    <item rdf:about="https://www.wvds.it/wiki/doku.php?id=en:int:pqcrypt:szenarien:operator:disaster-recovery:key-ceremony&amp;rev=1769736586&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2026-01-30T01:29:46+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>Key Ceremony</title>
        <link>https://www.wvds.it/wiki/doku.php?id=en:int:pqcrypt:szenarien:operator:disaster-recovery:key-ceremony&amp;rev=1769736586&amp;do=diff</link>
        <description>Key Ceremony

Purpose: Secure, auditable generation of CA keys 

Participants: At least 3-4 persons (split control) 

Duration: 2-4 hours

Formal procedure for generating CA keys with split responsibility and audit trail.

----------

Why Key Ceremony?</description>
    </item>
    <item rdf:about="https://www.wvds.it/wiki/doku.php?id=en:int:pqcrypt:szenarien:operator:disaster-recovery:notfall-revocation&amp;rev=1769736626&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2026-01-30T01:30:26+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>Emergency Revocation</title>
        <link>https://www.wvds.it/wiki/doku.php?id=en:int:pqcrypt:szenarien:operator:disaster-recovery:notfall-revocation&amp;rev=1769736626&amp;do=diff</link>
        <description>Emergency Revocation

SEV-1 Incident: Immediate response on CA compromise! 

RTO: 1 hour | Decision makers: CISO + PKI Lead

Procedure for mass revocation of certificates on CA compromise.

----------

When Emergency Revocation?
 Trigger  Example  Action</description>
    </item>
    <item rdf:about="https://www.wvds.it/wiki/doku.php?id=en:int:pqcrypt:szenarien:operator:disaster-recovery:start&amp;rev=1769736506&amp;do=diff">
        <dc:format>text/html</dc:format>
        <dc:date>2026-01-30T01:28:26+00:00</dc:date>
        <dc:creator>Anonymous (anonymous@undisclosed.example.com)</dc:creator>
        <title>Disaster Recovery</title>
        <link>https://www.wvds.it/wiki/doku.php?id=en:int:pqcrypt:szenarien:operator:disaster-recovery:start&amp;rev=1769736506&amp;do=diff</link>
        <description>Disaster Recovery

Critical: These runbooks should be tested regularly! 

Target audience: PKI Administrators, Security Team

Emergency procedures for CA failures, compromises, and recovery.

----------

Overview



----------

Scenarios
  Scenario</description>
    </item>
</rdf:RDF>
