Verified Commit aaf6b420 authored by Aki Braun's avatar Aki Braun
Browse files

Assessment criteria covers IPv6, too

Resolves #535
parent 0e3b2d6b
Loading
Loading
Loading
Loading
+4 −4
Original line number Diff line number Diff line
## 6.1 Introduction to the assessment and compliance criteria

[//]: # (TODO: write something in the inroduction of Clause 6 that if a product supports IPv6, all tests must be completed both on IPv4 and IPv6)

This clause provides objective and reproducible assessment criteria to determine whether a product complies with the technical security requirements of [clause 5](#technical-requirements-for-products).

For each cybersecurity requirements defined in [clause 5](#technical-requirements-for-products), the following clauses specify assessment criteria to determine if the technical requirement is met.

For all assessment criteria specific to networking, products which support IPv6 only pass their assessments if all verdict criterion are fulfilled both using IPv4 and IPv6.

## 6.2 Appropriate level of cybersecurity

### 6.2.1 Overview
@@ -152,9 +152,9 @@ Otherwise FAIL

* List of sources of untrusted input
* Analysis of sources of untrusted input for specified inputs
* Sufficienct analysis of untrusted inputs
* Sufficient analysis of untrusted inputs
* List of test inputs
* Logs of testing inputs and recording behavior
* Logs of testing inputs and recording behaviour
* Sufficiency analysis of testing logs

#### 6.2.4.6 Guidance