dido:03-dido-te:99-annexes:annex-c-requirements:03-functional-requirements:03-02-node-requirements:nod-011-preserve-node-state:nod-011c-protect-preserved-node-state

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revision Previous revision
Next revision
Previous revision
dido:03-dido-te:99-annexes:annex-c-requirements:03-functional-requirements:03-02-node-requirements:nod-011-preserve-node-state:nod-011c-protect-preserved-node-state [2026/08/17 14:20] – removed - external edit (Unknown date) 127.0.0.1dido:03-dido-te:99-annexes:annex-c-requirements:03-functional-requirements:03-02-node-requirements:nod-011-preserve-node-state:nod-011c-protect-preserved-node-state [2026/08/17 14:20] (current) – ↷ Links adapted because of a move operation nick_dido
Line 1: Line 1:
 +====== NOD-011c — Protect Preserved Node State ======
  
 +[[dido:03-dido-te:99-annexes:annex-c-requirements:03-functional-requirements:03-02-node-requirements:nod-011-preserve-node-state:start|Go to NOD-011 — Preserve Node State]]
 +
 +===== Statement =====
 +
 +The [[dido:99_annexes:annex-b-terms-and-definitions:d:dido-te|DIDO-TE]] SHALL protect each preserved representation of [[dido:99_annexes:annex-b-terms-and-definitions:n:node|Node]] state using the protections specified by the governing [[dido:99_annexes:annex-b-terms-and-definitions:t:test_definition|Test Definition]].
 +
 +===== Derived From =====
 +
 +  * [[dido:03-dido-te:99-annexes:annex-c-requirements:03-functional-requirements:03-02-node-requirements:nod-011-preserve-node-state:start|NOD-011 — Preserve Node State]]
 +  * [[dido:03-dido-te:99-annexes:annex-c-requirements:03-functional-requirements:03-02-node-requirements:nod-011-preserve-node-state:nod-011a-specify-node-state-preservation|NOD-011a — Specify Node State Preservation]]
 +  * [[dido:03-dido-te:99-annexes:annex-c-requirements:03-functional-requirements:03-02-node-requirements:nod-011-preserve-node-state:nod-011b-capture-node-state|NOD-011b — Capture Node State]]
 +  * [[dido:03-dido-te:99-annexes:annex-b-references:dte-005|[DTE5] DIDO-TE Requirements Register]], source requirement identifier and obligation to be assigned
 +  * [[dido:03-dido-te:99-annexes:annex-b-references:dte-006|[DTE6] Structured Information Processing Reference Architecture (SIP-RA)]]
 +  * [[dido:03-dido-te:99-annexes:annex-b-references:dte-007|[DTE7] Federated Data Interpretation Systems Reference Architecture (FDIS-RA)]]
 +
 +===== Rationale =====
 +
 +Protection preserves the confidentiality, integrity, availability, identity, context, and usability of a captured Node-state representation.
 +
 +A preserved state representation may contain configuration information, internal data, pending work, Node Bindings, credentials, security information, resource assignments, or other sensitive information. Protection prevents unauthorized access, disclosure, alteration, substitution, removal, copying, or use.
 +
 +Integrity protection demonstrates that the representation remains the same as the verified captured representation or that each authorized change remains distinguishable and traceable.
 +
 +Availability protection ensures that the representation remains accessible for the purpose and period specified by the governing Test Definition.
 +
 +Protection requirements continue while the DIDO-TE stores, transfers, copies, verifies, restores, or disposes of the representation. A change of storage location or custody does not end the protection obligation.
 +
 +===== Applies To =====
 +
 +  * [[dido:99_annexes:annex-b-terms-and-definitions:d:dido-te|DIDO-TE]]
 +  * [[dido:99_annexes:annex-b-terms-and-definitions:n:node|Node]]
 +  * [[dido:99_annexes:annex-b-terms-and-definitions:n:node_definition|Node Definition]]
 +  * [[dido:99_annexes:annex-b-terms-and-definitions:n:node_implementation|Node Implementation]]
 +  * [[dido:99_annexes:annex-b-terms-and-definitions:n:node_configuration|Node Configuration]]
 +  * [[dido:99_annexes:annex-b-terms-and-definitions:n:node_binding|Node Binding]]
 +  * [[dido:99_annexes:annex-b-terms-and-definitions:t:test_definition|Test Definition]]
 +  * [[dido:99_annexes:annex-b-terms-and-definitions:t:test_environment|Test Environment]]
 +  * [[dido:99_annexes:annex-b-terms-and-definitions:t:test_execution|Test Execution]]
 +  * [[dido:99_annexes:annex-b-terms-and-definitions:t:test_resource|Test Resource]]
 +  * [[dido:99_annexes:annex-b-terms-and-definitions:a:authorizing_authority|Authorizing Authority]]
 +  * [[dido:99_annexes:annex-b-terms-and-definitions:e:evidence|Evidence]]
 +  * [[dido:99_annexes:annex-b-terms-and-definitions:t:traceability|Traceability]]
 +
 +===== Verification =====
 +
 +Verification confirms that:
 +
 +  - The governing Test Definition specifies the protections governing each preserved Node-state representation.
 +  - The DIDO-TE uniquely identifies each protected representation.
 +  - The DIDO-TE protects the confidentiality of the representation.
 +  - The DIDO-TE protects the integrity of the representation.
 +  - The DIDO-TE protects the availability of the representation.
 +  - The DIDO-TE protects the representation from unauthorized access, disclosure, alteration, substitution, copying, removal, use, or deletion.
 +  - The DIDO-TE restricts access to identities authorized by the governing Test Definition.
 +  - The DIDO-TE verifies authorization before granting access to the representation.
 +  - The DIDO-TE preserves the association between the representation and the Node, preservation point, Test Environment, and Test Execution.
 +  - The DIDO-TE protects the representation while storing, transferring, copying, verifying, restoring, and disposing of it.
 +  - The DIDO-TE preserves protection when custody or storage location changes.
 +  - The DIDO-TE detects an unauthorized access attempt.
 +  - The DIDO-TE detects alteration, corruption, substitution, removal, or loss of the representation.
 +  - Each authorized change produces a distinguishable revision and preserves the prior representation when the governing Test Definition requires preservation of the prior representation.
 +  - The DIDO-TE records each authorized access, transfer, change of custody, and material protection event identified for retention.
 +  - The DIDO-TE prevents a representation that fails an integrity check from being used for restoration, comparison, Test Results, or Evidence.
 +  - The DIDO-TE maintains Traceability among the representation, Node, preservation specification, protections, authorized identities, access events, custody changes, Test Executions, Test Results, and resulting Evidence.
 +  - Missing, incomplete, ineffective, bypassed, unauthorized, or untraceable protection constitutes nonconformance with this requirement.
 +
 +===== Referenced By =====
 +
 +The following pages reference this requirement:
 +
 +{{backlinks>.#dido:03-dido-te}}
 +
 +===== Delivery Phase =====
 +
 +<todo>Assign the delivery phase.</todo>
 +
 +===== Implementation Status =====
 +
 +<todo>Assign the implementation status.</todo>
 +
 +===== Requirement Status =====
 +
 +<todo>The proposed derived requirement requires review and acceptance.</todo>
 +
 +----
 +
 +===== Issues =====
 +
 +<todo>Assign the source requirement identifier and obligation from the DIDO-TE Requirements Register.</todo>
 +
 +----
 +
 +===== Notes for Editors =====
 +
 +<code dokuwiki>
 +{{section>dido:03-dido-te:99-annexes:annex-c-requirements:03-node-requirements:nod-011-preserve-node-state:nod-011c-protect-preserved-node-state#Statement&noheader&nofooter&noeditbtn}}
 +</code>
 +
 +----
 +
 +<WRAP centeralign>
 +© 2026 Dido Solutions, Inc. and Jackrabbit Consulting, Inc.
 +</WRAP>