安全檢測(cè)
安全檢測(cè)>物聯(lián)網(wǎng)安全檢測(cè)
物聯(lián)網(wǎng)安全檢測(cè)
對(duì)各類(lèi)物聯(lián)網(wǎng)設(shè)備進(jìn)行功能、安全性、兼容性等方面的測(cè)試。
一、檢測(cè)內(nèi)容
[1] No universal default passwords(無(wú)默認(rèn)通用密碼)
[2] Implement a means to manage reports of vulnerabilities(實(shí)施管理漏洞報(bào)告的方法)
[3] Keep software updated(不斷更新軟件)
[4] Securely store sensitive security parameters(安全存儲(chǔ)敏感的安全參數(shù))
[5] Communicate securely(安全通信)
[6] Minimize exposed attack surfaces(盡量減少暴露的攻擊表面)
[7] Ensure software integrity(確保軟件完整性)
[8] Ensure that personal data is secure(確保個(gè)人數(shù)據(jù)安全)
[9] Make systems resilient to outages(使系統(tǒng)可以抵御中斷)
[10] Examine system telemetry data(檢查系統(tǒng)遙測(cè)數(shù)據(jù))
[11] Make it easy for users to delete user data(方便用戶刪除用戶數(shù)據(jù))
[12] Make installation and maintenance of devices easy(輕松安裝和維護(hù)設(shè)備)
[13] Validate input data(驗(yàn)證輸入數(shù)據(jù))
[14] Data protection provisions for consumer IoT(GDPR)
二、檢測(cè)依據(jù)
ETSI EN 303 645 V2.1.1 (2020-06) CYBER;Cyber Security for Consumer Internet of Things:Baseline Requirements
ETSI TS 103 701 V1.1.1 (2021-08) CYBER;Cyber Security for Consumer Internet of Things:Conformance Assessment of Baseline Requirements
二、檢測(cè)流程
1.業(yè)務(wù)咨詢
2提交產(chǎn)品文檔
3.產(chǎn)品檢測(cè)
4.出具測(cè)試報(bào)告(CNAS認(rèn)可或國(guó)際知名認(rèn)證機(jī)構(gòu)頒發(fā)的證書(shū))
