External Time Sources ✔️GPS
GLONASS - Global Navigation Satellite System
Galileo
FR-7 - Resource Availability includes: ✔️DoS Protection
Resource Management (Prevent Resource Exhaustion)
Control System Backup
Control System Recovery & Reconstitution
Emergency Power
Network and Security Config Settings
Least Functionality
Control system component inventory
Foundational Requirements (FR) ✔️1) Identification and Authentication
Control (IAC)
2) Use Control (UC)
3) System Integrity (SI)
4) Data Confidentiality (DC)
5) Restricted Data Flow (RDF)
6) Timely Response to Events (TRE)
7) Resource Availability (RA)
,Security Level Definitions ✔️SL-0: No specific requirements or security
protection necessary
SL-1: Protection against casual or coincidental violation
SL-2: Protection against intentional violation using simple means with low
resources, generic skills and low motivation
SL-3: Protection agains intentional violation using sophisticated means with
moderate resources, IACS-specific skills and moderate motivation
SL-4: Protection agains intentional violation using sophisticated means with
extended resources, IACS-specific skills and high motivation
FR-1 Identification and Authentication Control (IAC) ✔️* Human user
identification and authentication
* S/W processes and device identification and authentication
* Account management
* Identified management
* Authenticator management
* Wireless access management
* Password strength
* PKI certificates
* Strength of Public Key authentication
* Authenticator feedback
* Unsuccessful login attempts
* System use notification
* Access via untrusted networks
FR-2 Use Control (UC) ✔️* Authentication enforcement
* Wireless use control
* Use control for portable and mobile devices
* Mobile code (Java, PDF, etc.)
* Session lock
* Remote session termination
* Concurrent session control
* Auditable events
* Audit storage capacity
* Response to audit processing failures
* Timestamps
* Non-repudiation
FR-3 System Integrity (SI) ✔️* Communication integrity
, * Malicious code protection
* Security functionality verification
* S/W and information integrity
* Input validation
* Deterministic output
* Error handling
* Session integrity
* Protection of audit information
FR-4 Data Confidentiality (DC) ✔️* Information confidentiality
* Information persistence (purge shared memory)
* Use of cryptography
FR-5 Restricted Data Flow (RDF) ✔️* Network segmentation
* Zone boundary protection
* General purpose person-to-person communication restrictions (e.g., email,
facebook, etc.)
* Application partitioning
Malicious Code Protection Techniques ✔️- Black/white lists
- Removable media control
- Sandbox techniques
- No Execute (NX) bit
- Data Execution Prevention
- ASLR - Address Space Layout Randomization
- Stack corruption detection
- Mandatory Access Control (MAC)
RJ-45 Jack Options ✔️- Sealed Registered Jack 45
- M12 Connector
Environmental Conditions that can affect IACS integrity ✔️- Particulates
- Liquids
- Vibration
- Gases
- Radiation
The benefits of buying summaries with Stuvia:
Guaranteed quality through customer reviews
Stuvia customers have reviewed more than 700,000 summaries. This how you know that you are buying the best documents.
Quick and easy check-out
You can quickly pay through credit card or Stuvia-credit for the summaries. There is no membership needed.
Focus on what matters
Your fellow students write the study notes themselves, which is why the documents are always reliable and up-to-date. This ensures you quickly get to the core!
Frequently asked questions
What do I get when I buy this document?
You get a PDF, available immediately after your purchase. The purchased document is accessible anytime, anywhere and indefinitely through your profile.
Satisfaction guarantee: how does it work?
Our satisfaction guarantee ensures that you always find a study document that suits you well. You fill out a form, and our customer service team takes care of the rest.
Who am I buying these notes from?
Stuvia is a marketplace, so you are not buying this document from us, but from seller LeCrae. Stuvia facilitates payment to the seller.
Will I be stuck with a subscription?
No, you only buy these notes for $19.99. You're not tied to anything after your purchase.