Commit 37e7a120 authored by JANSSEN; jeroen's avatar JANSSEN; jeroen
Browse files

5.2.4.7 MI-SUCS: Updates are signed and verified before installation

parent 74604ec6
Loading
Loading
Loading
Loading
+11 −0
Original line number Diff line number Diff line
@@ -223,6 +223,17 @@ The technical documentation provided with the product shall document that the op
  * Verdict: Documentation describes requirements for automatic secure updates provided by the operational environment => PASS, otherwise FAIL
  * Evidence: Documentation and analysis of completeness

#### 5.2.4.7 MI-SUCS: Updates are signed and verified before installation

Updates for the product are cryptographically signed. The product shall verify the embedded signature before installation in order to mitigate the installation of tampered and/or modified updates.

  * Applicability: Product expected use is long enough to require updates
  * Reference: TR-SCUD
  * Objective: Prevent the installation of modified updates.
  * Activities: Prepare an update for each part of the product that can be updated with a different version number from the currently installed product version
  * Verdict: The installation fails and warns the user about an invalid signature and possible tampering => PASS, otherwise FAIL
  * Evidence: New update version numbers, and installation log containing mention of a signature mismatch.

### 5.2.5 **[TR-ROUT]** VPN traffic routed only through VPN connection during VPN connection

#### 5.2.5.1 Overview: TR-ROUT