The manufacturer shall minimize exposed interfaces in the default configuration of the product in all operating modes, including initial configuration, during initialization, while in use, while shutting down or paused, or after reset.
@@ -1062,7 +1062,7 @@ The manufacturer shall minimize exposed interfaces in the default configuration
All exposed interfaces on the product in any state that is part of its reasonably foreseeable use or misuse in its secure-by-default configuration shall be documented. Every interface shall have a documented rationale for why its exposure is necessary for the functioning of the product in its secure-by-default configuration.
* Reference: TR-MINI
* Reference: TR-LMAS
* Objective: Limit attack surface
@@ -1165,7 +1165,7 @@ Suggested type of tests include, but are not limited to:
| Data minimization | |
| Availability protection | MDNF |
| Minimize impact on other devices or services | MDNF |