<?xml version="1.0" encoding="utf-8"?><feed xmlns="http://www.w3.org/2005/Atom" ><generator uri="https://jekyllrb.com/" version="4.4.1">Jekyll</generator><link href="https://keysupport.net/feed.xml" rel="self" type="application/atom+xml" /><link href="https://keysupport.net/" rel="alternate" type="text/html" /><updated>2025-11-25T06:14:18+00:00</updated><id>https://keysupport.net/feed.xml</id><title type="html">keysupport.net</title><entry><title type="html">History of keysupport.net</title><link href="https://keysupport.net/jekyll/update/2025/11/25/history-of-keysupport.net.html" rel="alternate" type="text/html" title="History of keysupport.net" /><published>2025-11-25T04:30:00+00:00</published><updated>2025-11-25T04:30:00+00:00</updated><id>https://keysupport.net/jekyll/update/2025/11/25/history-of-keysupport.net</id><content type="html" xml:base="https://keysupport.net/jekyll/update/2025/11/25/history-of-keysupport.net.html"><![CDATA[<p>The domain <a href="https://keysupport.net/">keysupport.net</a> was the prior website for the <a href="https://www.iad.gov/KeySupport/">NSA EKMS Facility</a>.</p>

<p>The following information is based on a google search for NSA EKMS.</p>

<blockquote>
  <p>The EKMS Central Facility, also known as Tier 0, is the foundational element of the U.S. National Security Agency’s Electronic Key Management System, responsible for the generation, distribution, and management of electronic key material for secure communications.</p>

  <p>It is located in an underground building in Finksburg, Maryland, and manages both physical and electronic keys for systems like STU-III, STE, and SDNS.  The facility supports key generation, over-the-air rekeying, and maintains compromise recovery for key material.</p>

  <p>It is part of a larger system that includes Tier 1 (service-level systems), Tier 2 (Local Management Devices), and Tier 3 (end-user devices and key loaders).</p>

  <p>The EKMS system was developed to address security and logistical challenges of previous systems like the COMSEC Material Control System (CMCS), particularly the human threat associated with paper-based keys.</p>

  <p>The EKMS is being replaced by the Key Management Infrastructure (KMI).</p>
</blockquote>

<p>I’m fairly certain paper-based keys aren’t used any more.</p>

<p>I <em>think</em> this domain may have been used to host malware, but I’m <em>not</em> attributing that to the NSA.</p>

<p>While the domain was used for EKMS, I <em>think</em> <a href="https://en.wikipedia.org/wiki/Booz_Allen_Hamilton">Booz Allen Hamilton</a> was involved.</p>

<p>Here is historical <code class="language-plaintext highlighter-rouge">whois</code> information for this domain in <a href="https://keysupport.net/assets/keysupport.net.json">JSON</a>.</p>]]></content><author><name></name></author><category term="jekyll" /><category term="update" /><summary type="html"><![CDATA[The domain keysupport.net was the prior website for the NSA EKMS Facility.]]></summary></entry><entry><title type="html">API Changes</title><link href="https://keysupport.net/jekyll/update/2025/11/25/api-changes.html" rel="alternate" type="text/html" title="API Changes" /><published>2025-11-25T03:45:00+00:00</published><updated>2025-11-25T03:45:00+00:00</updated><id>https://keysupport.net/jekyll/update/2025/11/25/api-changes</id><content type="html" xml:base="https://keysupport.net/jekyll/update/2025/11/25/api-changes.html"><![CDATA[<p>The <a href="https://keysupport.net/api/">Certificate Validation Service API</a> has been upgraded to <a href="https://spring.io/blog/2025/11/20/spring-boot-4-0-0-available-now">Spring Boot 4</a>!</p>]]></content><author><name></name></author><category term="jekyll" /><category term="update" /><summary type="html"><![CDATA[The Certificate Validation Service API has been upgraded to Spring Boot 4!]]></summary></entry><entry><title type="html">It works!</title><link href="https://keysupport.net/jekyll/update/2025/11/07/it-works.html" rel="alternate" type="text/html" title="It works!" /><published>2025-11-07T20:10:54+00:00</published><updated>2025-11-07T20:10:54+00:00</updated><id>https://keysupport.net/jekyll/update/2025/11/07/it-works</id><content type="html" xml:base="https://keysupport.net/jekyll/update/2025/11/07/it-works.html"><![CDATA[<p>It Works!</p>

<p>Thanks for visiting!  Server Configuration hints are availabe via the <a href="https://keysupport.net/tls/">TLS Config</a> section of this site.</p>

<p>This site is a quick consolidation of TLS termination for the various keysupport.* domain hosts supporting HTTP.</p>

<p>I’m also working to make various API prototypes available via this configuration as a survailence mechanism for common traffic and Post Quantum chryptograpic support.</p>]]></content><author><name></name></author><category term="jekyll" /><category term="update" /><summary type="html"><![CDATA[It Works!]]></summary></entry></feed>