@@ -1125,7 +1125,7 @@ It covers misuse of users and administrators function : T_SYS02,T_SYS05, T_SYS07
- REFERENCE: REQ-5.2-04
- REQUIREMENT: The PKI shall zeroize secrets in plaintext form.
- RATIONALE:
- RATIONALE: Zeroizing secrets reduces the compromission of secrets during the temporary compromission of a PKI component, to only secrets used while the compromission is in effect. This enables better tracing of what secrets were likely compromised.
- APPLICABILITY: Where the PKI temporarily manipulates secrets in plaintext form.