Commit 31236cea authored by Santeri Toikka's avatar Santeri Toikka
Browse files

Enhanced 6.2.1.4 CYB_GENERAL-4

parent c838639d
Loading
Loading
Loading
Loading
+4 −4
Original line number Diff line number Diff line
@@ -1169,7 +1169,7 @@ For **low** risk:

For **medium** risk:

* **CYB_GENERAL_4** In the context of key management and accepting new devices to the management context the product shall support:
* **CYB_GENERAL-4** In the context of key management and accepting new devices to the management context the product shall support:
  1. initialisation of trust in a greenfield deployment, and in the connected device management;
  2. accepting managed elements into the network based on that trust;
  3. key rotation and replacement of all relevant cryptographic keys after trust has been established.
@@ -1798,20 +1798,20 @@ For each cybersecurity requirements defined in clause 5, the following clauses s
**Preparation:**

1. Have the product initialised and available with the default configuration and required credentials;
2. Have a managed element available for testing.
2. Have a not yet and not enrolled managed element available for testing

**Activities:**

1. Investigate how the system initialises trust;
2. Perform necessary actions defined in the technical documentation;
3. Join the managed element into the system;
3. Join the new element into the product and make it a managed element;
4. Rotate the keys used in previous steps;
5. Repeat in all connections where such trust is used.

**Verdict:**

1. Pass, all tests pass without issues
2. and keys are replaced with provided ones in the managed element.
2. and keys before held in the product are replaced with provided ones from the managed element
3. Fail otherwise.

**Supporting Evidence:**