Réalisations & traçabilité
Matrice Exigence → Réalisation → Test
| Exigence | Réalisation(s) | Avancement | Couverture test |
|---|---|---|---|
| CRA-01 Livré sans vulnérabilité exploitable connue (annexe I, partie I) 💬 implemented |
non réalisée | 0% | 1 test(s) |
| CRA-02 Configuration sûre par défaut : aucun mot de passe par défaut, réinitialisation possible (annexe I, partie I) 💬 implemented |
Mot de passe unique par appareil, imprimé sur l'étiquette ; bouton de réinitialisation done firmware/provisioning.c | 100% | 1 test(s) |
| CRA-03 Protection contre l'accès non autorisé : authentification du client MQTT par certificat (annexe I, partie I) 💬 implemented |
non réalisée | 0% | 1 test(s) |
| CRA-04 Confidentialité des données en transit : TLS 1.2 minimum (annexe I, partie I) 💬 implemented |
non réalisée | 0% | 1 test(s) |
| CRA-05 Intégrité : micrologiciel signé, démarrage sécurisé (annexe I, partie I) 💬 implemented |
Secure boot v2 et signature des images OTA done firmware/ota.c | 100% | 1 test(s) |
| CRA-06 Correction par mises à jour de sécurité, automatiques par défaut (annexe I, parties I et II) 💬 implemented |
non réalisée | 0% | 1 test(s) |
| CRA-07 Nomenclature logicielle (SBOM) lisible par machine (annexe I, partie II, point 1) 💬 implemented |
non réalisée | 0% | 1 test(s) |
| CRA-08 Politique de divulgation coordonnée des vulnérabilités publiée (annexe I, partie II) 💬 draft |
non réalisée | 0% | non testée |
Nouvelle réalisation
| Réf | Réalisation | Exigence | Type | Statut | % |
|---|---|---|---|---|---|
| REL-01 | Mot de passe unique par appareil, imprimé sur l'étiquette ; bouton de réinitialisation | CRA-02 | feature | done | 100% |
| REL-02 | Secure boot v2 et signature des images OTA | CRA-05 | feature | done | 100% |