Verified Commit 8310fe58 authored by Valerie Aurora's avatar Valerie Aurora Committed by Aki Braun
Browse files

Annex C.3: Explain role of assumptions and remove identifiers

parent d501e1c2
Loading
Loading
Loading
Loading
+8 −4
Original line number Diff line number Diff line
@@ -779,21 +779,25 @@ Rationale: Different consequences change the impact of compromise of Protected D

## C.3 Assumptions

### C.3.1 Overview

Assumptions limit the scope of threats considered by this security analysis. A manufacturer's cybersecurity risk assessment may have a different scope.

### C.3.1 Platform

**[AS-PP]:** The platform the product is running on is trustworthy.
The platform the product is running on is trustworthy.

### C.3.2 Proper administrator

**[AS-PA]:** The product administrator is not intentionally hostile and is engaging in good faith efforts to administer the product properly.
The product administrator is not intentionally hostile and is engaging in good faith efforts to administer the product properly.

### C.3.3 Attacker has limited physical access to product

**[AS-LP]:** An attacker will have only temporary physical access to the platform running the product.
An attacker will have only temporary physical access to the platform running the product.

### C.3.4 Attacker has limited resources

**[AS-LR]:** An attacker will use limited resources in proportion to the value of the assets of the product in each use case.
An attacker will use limited resources in proportion to the value of the assets of the product in each use case.

## C.4 Threats and security analysis