@@ -1290,7 +1290,7 @@ The assessment criteria for each security requirements are described in a struct
### 6.8.2 Secret management
- REFERENCE: ACC_PKI_DM_001
- REFERENCE: ACC_PKI_DM_003
- OBJECTIVE: Verify the product only creates keys by means of a SCD appropriate for this use.
@@ -1306,8 +1306,7 @@ The assessment criteria for each security requirements are described in a struct
- The documentation of private and symmetric keys profiles and how these keys are created.
- REFERENCE: ACC_PKI_DM_002
- REFERENCE: ACC_PKI_DM_004
- OBJECTIVE: Verify the product does not persistently store private or symmetric keys in plaintext form.
@@ -1321,9 +1320,7 @@ The assessment criteria for each security requirements are described in a struct
a) The documentation of private and symmetric keys profiles and how these keys are manipulated.
- REFERENCE: ACC_PKI_DM_003
- REFERENCE: ACC_PKI_DM_005
- OBJECTIVE: Verify public keys stored within the product outside a secure cryptographic device are protected against undetected modification, and that public keys are not released or used after a detected modification.
@@ -1367,9 +1364,7 @@ The assessment criteria for each security requirements are described in a struct
c) the way operations making use of public keys were attempted to be triggered, and the response from the product;
- REFERENCE: ACC_PKI_DM_004
- REFERENCE: ACC_PKI_DM_006
- OBJECTIVE: Verify the product zeroizes secrets in plaintext form.
@@ -1390,7 +1385,7 @@ The assessment criteria for each security requirements are described in a struct
b) the documentation of zeroization methods employed.
- REFERENCE: ACC_PKI_DM_005
- REFERENCE: ACC_PKI_DM_007
- OBJECTIVE: Verify the product cannot export private or symmetric keys in plaintext form.