Commit 74217e10 authored by Pierre Andouche's avatar Pierre Andouche
Browse files

Comment 385

parent b1c9a1af
Loading
Loading
Loading
Loading
+16 −0
Original line number Diff line number Diff line
@@ -1581,6 +1581,22 @@ REFERENCE: ASS-REQ-6.2-01



- REFERENCE: ASS-REQ-6.3-01

  - OBJECTIVE: Verify the PKI only creates keys by means of a secure cryptographic device appropriate for this use.

  - PREPARATION: Document the profiles of private and symmetric keys manipulated by the PKI, and how they are created by the PKI.

  - ACTIVITIES: Verify that all keys are created by an appropriate secure cryptographic device.

  - VERDICT: SUCCESS if the verification passes; else FAIL.

  - EVIDENCE:

    a) The documentation of private and symmetric keys profiles and how these keys are created.

 

- REFERENCE: ASS-REQ-6.3-02

  - OBJECTIVE: Verify the PKI does not persistently store private or symmetric keys in plaintext form.