NOD-010b — Authorize Node Fault Injection
Statement
The Authorizing Authority SHALL authorize each Fault Injection before the DIDO-TE introduces the specified Fault.
Derived From
-
[DTE5] DIDO-TE Requirements Register, source requirement identifier and obligation to be assigned
Rationale
Fault Injection deliberately introduces a condition intended to change Node behaviour. Authorization confirms that an identified authority has accepted the specified purpose, target, scope, risks, controls, termination conditions, recovery conditions, and potential effects before introduction of the Fault.
The authorization identifies the Fault, target Node, governing Test Definition, governing Test Procedure, permitted scope, authorization period, responsible participants, constraints, and conditions that invalidate or revoke the authorization.
Authorization of the Test Definition does not necessarily authorize execution of every Fault Injection described by that Test Definition. NOD-010b requires an authorization that explicitly covers the Fault Injection performed by the DIDO-TE.
Changes to the target, Fault, injection point, timing, duration, intensity, scope, prohibited effects, termination conditions, or recovery conditions require reassessment of the authorization.
Unauthorized or incorrectly authorized Fault Injection may affect unrelated Nodes, Test Resources, Test Environments, Test Executions, protected information, or operational services.
Applies To
Verification
Verification confirms that:
-
Each Fault Injection has an identified Authorizing Authority.
-
The Authorizing Authority has authority over the target Node, Test Environment, and affected resources.
-
The authorization uniquely identifies the Fault Injection.
-
The authorization identifies the specified Fault and target Node.
-
The authorization identifies the governing Test Definition and Test Procedure.
-
The authorization identifies the injection point, timing, duration, intensity, and permitted scope.
-
The authorization identifies the expected effects and prohibited effects.
-
The authorization identifies the controls governing containment, suspension, termination, and recovery.
-
The authorization identifies the authorization period and conditions that invalidate or revoke authorization.
-
The authorization identifies the participants permitted to initiate, control, terminate, and recover from the Fault Injection.
-
The authorization exists before preparation proceeds beyond the point that could introduce the Fault.
-
The authorization exists before the DIDO-TE introduces the Fault.
-
The DIDO-TE verifies the authorization before permitting Fault Injection.
-
The DIDO-TE prevents Fault Injection when authorization is missing, expired, revoked, ambiguous, incomplete, or inconsistent with the governing Test Definition.
-
The DIDO-TE prevents Fault Injection when the target, Fault, injection point, timing, duration, intensity, or scope differs from the authorization.
-
A change to an authorized Fault Injection receives authorization before the changed Fault Injection proceeds.
-
The DIDO-TE preserves the authorization and each authorization revision.
-
The DIDO-TE maintains Traceability among the Authorizing Authority, authorization, Fault, Fault Injection, target Node, governing Test Definition, governing Test Procedure, Test Environment, Test Execution, and resulting Evidence.
-
Missing, expired, revoked, incomplete, unauthorized, incorrectly scoped, or untraceable authorization constitutes nonconformance with this requirement.
Referenced By
The following pages reference this requirement:
Delivery Phase
Assign the delivery phase.
Implementation Status
Assign the implementation status.
Requirement Status
The proposed derived requirement requires review and acceptance.
Issues
Assign the source requirement identifier and obligation from the DIDO-TE Requirements Register.
Notes for Editors
{{section>dido:03-dido-te:99-annexes:annex-c-requirements:03-node-requirements:nod-010-inject-node-faults:nod-010b-authorize-node-fault-injection#Statement&noheader&nofooter&noeditbtn}}
© 2026 Dido Solutions, Inc. and Jackrabbit Consulting, Inc.