@@ -1223,7 +1223,7 @@ This clause addresses the requirements in the CRA [\[i.1\]](#_ref_i.1) Annex 1 P
This clause addresses the requirements in the CRA [\[i.1\]](#_ref_i.1) Annex 1 Part 1 (2) (c).
***SU_UPDATE-1** The product shall be securely updated.
***SU_UPDATE-2** The product shall have divorced OS and Application update procedures which makes it possible to obtain the set High Availability targets when the operational environment makes this possible.
***SU_UPDATE-2** The product shall have divorced OS and Application update procedures enabling the user to schedule the update following the operational needs and the High Availability targets.
***SU_UPDATE-3** The product shall ensure that the product can be updated at the time of first use to address all known exploitable vulnerabilities which were discovered after the product's placement on the market and before that first use.
> NOTE: **SU_UPDATE-3** is not conditional, because even in clustering environment, where product does not control its own deployed version, the documentation of installation might point to old sources.