Charles wants to deploy a credential management system (CMS). He wants to keep the keys as secure as possible.
Which of the following is the best design option for his CMS implementation?
A) Use AES-256 instead of 3DES.
B) Use long keys.
C) Use an HSM.
D) Change passphrases regularly.