Commit d6971e31 authored by Sammy Haddad's avatar Sammy Haddad
Browse files

Update file EN-304-624.md

parent be92bd24
Loading
Loading
Loading
Loading
+3 −3
Original line number Diff line number Diff line
@@ -946,7 +946,7 @@ This clause addresses the requirements in the CRA [\[i.1\]](#_ref_i.1) Annex 1 P
- REFERENCE: REQ-PKI-CON-09
  - REQUIREMENT: The product shall be able to establish and maintain a secure link with the SCD or KMS, and that the SCD or KMS interfaces are properly called.
  - RATIONALE: To ensure the secure key managment, the proper and secure use of exteranl SCD or KMS is required.
  - APPLICABILITY: UC2, UC3, UC4, UC5
  - APPLICABILITY: UC2, UC3, UC4, UC5.

### 5.6.2 CON - Key management

@@ -959,7 +959,7 @@ This clause addresses the requirements in the CRA [\[i.1\]](#_ref_i.1) Annex 1 P
- REFERENCE: REQ-PKI-CON-11
  - REQUIREMENT: Secret keys shall not be stored persistently in plaintext form. They shall be stored within a secure cryptographic device or encrypted using approved algorithms as defined in Annex K using independently managed keys. They may only be accessed in plaintext form temporarily for a single operation or batch of operations.
  - RATIONALE: To ensure trust the product must rely on secure and valid key creation and management systems accessible only to authorised users provided by hardware security devices.
  - APPLICABILITY: All use cases.
  - APPLICABILITY: UC2, UC3, UC4, UC5.

## 5.7 Integrity