PROCUREMENT AUTHORIZATION FOR MARINE CORPS ENTERPRISE DATA AT REST (DAR) ENCRYPTION SOLUTION FOR MOBILE COMPUTING DEVICES AND REMOVABLE STORAGE MEDIA
Date Signed: 12/2/2009 | MARADMINS Number: 0693/09
MARADMINS : 0693/09

R 020339Z DEC 09
UNCLASSIFIED//
MARADMIN 0693/09
MSGID/GENADMIN/CMC WASHINGTON DC C4//
SUBJ/PROCUREMENT AUTHORIZATION FOR MARINE CORPS ENTERPRISE DATA AT REST (DAR) ENCRYPTION SOLUTION FOR MOBILE COMPUTING DEVICES AND REMOVABLE STORAGE MEDIA//
REF/A/MSGID:MSG/CMC WASHINGTON DC C4 IA/040809Z//
REF/B/MSGID:MSG/DON CIO WASHINGTON DC/091007Z//
NARR/REF A IS MARADMIN 0461/09, MARINE CORPS ENTERPRISE DATA AT REST (DAR) ENCRYPTION SOLUTION FOR MOBILE COMPUTING DEVICES AND REMOVABLE STORAGE MEDIA.  REF B IS DON CIO MESSAGE, DON ENCRYPTION OF SENSITIVE UNCLASSIFIED DATA AT REST GUIDANCE.//
POC/MARK R. SCHAEFER/LTCOL/UNIT:HQMC C4 IA/NAME:703-693-3490 /EMAIL:MARK.R.SCHAEFER@USMC.MIL//
POC/JOSEPH PETTO/CIV/UNIT:MCNOSC/NAME:703-784-4156 /EMAIL:JOSEPH.PETTO@MCNOSC.USMC.MIL//
GENTEXT/REMARKS/1.  THIS MESSAGE CANCELS REF A.
2.  THIS MESSAGE REMOVES THE PURCHASE PROHIBITION CONTAINED IN REF A AND PROVIDES MARINE CORPS POLICY AUTHORIZING THE PURCHASE AND IMPLEMENATION OF DAR SOLUTION SETS.
3.  THE MARINE CORPS IS IMPLEMENTING AN ENTERPRISE SOLUTION SET FOR DATA AT REST (DAR) ENCRYPTION IAW REF B.  THIS SOLUTION SET APPLIES TO ALL MARINE CORPS ENTERPRISE NETWORK (MCEN) DEVICES ATTACHED TO THE NAVY-MARINE CORPS INTRANET (NMCI), LEGACY, PROGRAMS OF RECORD (POR), AND UNCLASSIFIED TACTICAL NETWORKS.
4.  POLICY
A.  ALL SENSITIVE UNCLASSIFIED DAR ON MOBILE COMPUTING DEVICES AND REMOVABLE STORAGE MEDIA MUST BE ENCRYPTED WITH THE MCEN DAR ENCRYPTION SOLUTION SETS.
B.  PURCHASE AND IMPLEMENTATION OF DAR ENCRYPTION TECHNOLOGIES IS FACILITATED AND IMPLEMENTED AS A MCEN SOLUTION WITH MARINE CORPS NETWORK OPERATIONS AND SECURITY CENTER (MCNOSC) OVERSIGHT.  UNTIL THE MCEN SOLUTION SETS ARE FULLY IMPLEMENTED, WINZIP 9.0, MICROSOFT ENCRYPTING FILE SYSTEM (EFS), OR ANY PREVIOUSLY APPROVED PRODUCT THAT MEETS THE REQUIREMENTS FOR ENCRYPTION TECHNOLOGIES IAW REF B IS AUTHORIZED FOR DAR ENCRYPTION.  ONCE THE MCEN SOLUTION SET IMPLEMENTATION IS COMPLETE, ALL OTHER MEANS OF DAR ENCRYPTION ARE NO LONGER AUTHORIZED.
C.  ALL NEWLY PROCURED COMPUTER ASSETS (DESKTOPS, LAPTOPS, PEDS, SERVERS, ETC.) MUST INCLUDE A TRUSTED PLATFORM MODULE (TPM) VERSION 1.2 OR HIGHER.  THIS POLICY APPLIES TO ALL POR AND NON-POR DEVICES.
D.  MARINE CORPS COMMANDS AND UNITS ARE LIMITED TO PURCHASING DAR SOLUTIONS INSIDE THE ENTERPRISE SOLUTION SETS.  SHOULD A COMMAND OR UNIT, THROUGH OPERATIONAL NECESSITY, REQUIRE A DAR ENCRYPTION SOLUTION OUTSIDE THE SOLUTION SET, SUBMIT WAIVER REQUESTS TO HQMC, C4 VIA EMAIL TO HQMC(UNDERSCORE)C4IA(UNDERSCORE)IDMGT@USMC.MIL INDICATING NEED, PROPOSED SOLUTION, AND NUMBER OF DEVICES.
E.  MARINE CORPS COMMANDS AND UNITS RESPONSIBLE FOR NETWORKS, SYSTEMS, AND APPLICATIONS THAT CANNOT IMPLEMENT A DAR SOLUTION DUE TO MISSION REQUIREMENTS OR OPERATIONAL NEEDS MUST SUBMIT WAIVER REQUESTS NLT 90 DAYS FROM THE RELEASE OF THIS MESSAGE TO HQMC, C4 VIA EMAIL TO HQMC(UNDERSCORE)C4IA(UNDERSCORE)IDMGT@USMC.MIL INDICATING THE REQUIRMENT AND MITIGATION PLAN.
5.  NETWORKS, SYSTEMS, AND APPLICATIONS IN DEVELOPMENT OR OUTSIDE OF THE MCNOSC DEFINED ENTERPRISE SOLUTION IMPLEMENATION WILL BUDGET FOR DAR PROCUREMENT AND MAINTENANCE.  WAIVER REQUESTS MUST BE SUBMITTED FOR APPROVAL PRIOR TO IMPLEMENATION.
6.  OPERATIONAL IMPLEMENTATION.  CENTRALIZED PROCUREMENT AND IMPLEMENTATION OF THE ENTERPRISE DAR SOLUTION SET WILL BE ACCOMPLISHED BY MCNOSC. 
7.  THIS MARADMIN, UNLESS SUPERSEDED, IS CANCELLED 1 NOVEMBER 2010.
8.  RELEASE AUTHORIZED BY MAJGEN G.J. ALLEN, DIRECTOR, COMMAND, CONTROL, COMMUNICATIONS, AND COMPUTERS//