Commit 7c72ffb5 authored by August Bournique's avatar August Bournique Committed by Santeri Toikka
Browse files

HAS Comment 64

Issue #103

Added "TR-" Prefix to all technical requirements in table
parent e767fcf7
Loading
Loading
Loading
Loading
+15 −15
Original line number Diff line number Diff line
@@ -1702,21 +1702,21 @@ Once the present document is cited in the Official Journal of the European Union

| No. | Description                                          | Requirements of Regulation | Corresponding technical requirements(s) |
|-----|------------------------------------------------------|----------------------------|-----------------------------------------|
| 1   | Secure design, development, production               | Annex I, Part I, (1)       | SSDD, LMII                              |
| 2   | No known exploitable vulnerabilities                 | Annex I, Part I, (2)(a)    | NKEV                                    |
| 3   | Secure by default configuration                      | Annex I, Part I, (2)(b)    | SDEF                                    |
| 4   | Secure updates                                       | Annex I, Part I, (2)(c)    | SCUD                                    |
| 5   | Authentication and access control mechanisms         | Annex I, Part I, (2)(d)    | AUTH\*                                  |
| 6   | Confidentiality of store and transmitted information | Annex I, Part I, (2)(e)    | CDST, CDTX, CRYP\*                      |
| 7   | Integrity protection for data and configuration      | Annex I, Part I, (2)(f)    | IDST, IDTX                              |
| 8   | Data minimization                                    | Annex I, Part I, (2)(g)    | DMIN                                    |
| 9   | Availability protection                              | Annex I, Part I, (2)(h)    | AVAI, LMII                              |
| 10  | Minimize impact on other devices or services         | Annex I, Part I, (2)(i)    | MINI, SDEF, AVAI, SSDD, LMII            |
| 11  | Limit attack surface                                 | Annex I, Part I, (2)(j)    | LMAS, SSDD, LMII                        |
| 12  | Exploit mitigation by limiting incident impact       | Annex I, Part I, (2)(k)    | LMII, AVAI, SSDD                        |
| 13  | Logging and monitoring mechanisms                    | Annex I, Part I, (2)(l)    | LOGG                                    |
| 14  | Secure deletion and data transfer                    | Annex I, Part I, (2)(m)    | SCDL, SDTR                              |
| 15  | Vulnerability handling                               | Annex I, Part II           | VULH                                    |
| 1   | Secure design, development, production               | Annex I, Part I, (1)       | TR-SSDD, TR-LMII                        |
| 2   | No known exploitable vulnerabilities                 | Annex I, Part I, (2)(a)    | TR-NKEV                                 |
| 3   | Secure by default configuration                      | Annex I, Part I, (2)(b)    | TR-SDEF                                 |
| 4   | Secure updates                                       | Annex I, Part I, (2)(c)    | TR-SCUD                                 |
| 5   | Authentication and access control mechanisms         | Annex I, Part I, (2)(d)    | TR-AUTH\*                               |
| 6   | Confidentiality of store and transmitted information | Annex I, Part I, (2)(e)    | TR-CDST, TR-CDTX, TR-CRYP\*             |
| 7   | Integrity protection for data and configuration      | Annex I, Part I, (2)(f)    | TR-IDST, TR-IDTX                        |
| 8   | Data minimization                                    | Annex I, Part I, (2)(g)    | TR-DMIN                                 |
| 9   | Availability protection                              | Annex I, Part I, (2)(h)    | TR-AVAI, TR-LMII                        |
| 10  | Minimize impact on other devices or services         | Annex I, Part I, (2)(i)    | TR-MINI, TR-SDEF, TR-AVAI, TR-SSDD, TR-LMII     |
| 11  | Limit attack surface                                 | Annex I, Part I, (2)(j)    | TR-LMAS, TR-SSDD, TR-LMII               |
| 12  | Exploit mitigation by limiting incident impact       | Annex I, Part I, (2)(k)    | TR-LMII, TR-AVAI, TR-SSD                |
| 13  | Logging and monitoring mechanisms                    | Annex I, Part I, (2)(l)    | TR-LOGG                                 |
| 14  | Secure deletion and data transfer                    | Annex I, Part I, (2)(m)    | TR-SCDL, TR-SDTR                        |
| 15  | Vulnerability handling                               | Annex I, Part II           | TR-VULH                                 |

\* _waiting on cross-vertical_