# IA-7 — Cryptographic Module Authentication

- **Control ID:** IA-7
- **Family:** [IA](/md/families/IA.md)
- **Baselines:** low, moderate, high
- **Enhancement of:** No content available.

## Description

Implement mechanisms for authentication to a cryptographic module that meet the requirements of applicable laws, executive orders, directives, policies, regulations, standards, and guidelines for such authentication.

## Discussion

Authentication mechanisms may be required within a cryptographic module to authenticate an operator accessing the module and to verify that the operator is authorized to assume the requested role and perform services within that role.

## Implementation guidance

No content available.

## CSF 2.0 subcategories

- [PR.AA-01](/md/csf/PR.AA-01.md) — Identities and credentials for authorized users, services, and hardware are managed by the organization
- [PR.AA-03](/md/csf/PR.AA-03.md) — Users, services, and hardware are authenticated

## Related controls

- [AC-3](/md/controls/AC-3.md)
- [IA-5](/md/controls/IA-5.md)
- [SA-4](/md/controls/SA-4.md)
- [SC-12](/md/controls/SC-12.md)
- [SC-13](/md/controls/SC-13.md)

---

Derived from official NIST publications (NIST SP 800-53 Rev 5 and NIST CSF 2.0). nistcontrols.com is not affiliated with NIST.
