diff options
Diffstat (limited to 'security-blueprint/part-2')
-rw-r--r-- | security-blueprint/part-2/0_Abstract.md | 3 | ||||
-rw-r--r-- | security-blueprint/part-2/2-Communication-modes.md | 8 | ||||
-rw-r--r-- | security-blueprint/part-2/3-Consoles.md | 4 |
3 files changed, 8 insertions, 7 deletions
diff --git a/security-blueprint/part-2/0_Abstract.md b/security-blueprint/part-2/0_Abstract.md index 4574ecf..da9daee 100644 --- a/security-blueprint/part-2/0_Abstract.md +++ b/security-blueprint/part-2/0_Abstract.md @@ -53,6 +53,7 @@ loads the Kernel/system image before passing control to it. The following table lists the terms utilized within this part of the document. Acronyms or Abbreviations | Description -------------------------- | --------------------------------- +------------------------- | ----------------------------------------------------------------------- _FUSE_ | **F**ilesystem in **U**ser**S**pac**E** _OTP_ | **O**ne-**T**ime-**P**rogrammable +_DOCSIS_ | **D**ata **O**ver **C**able **S**ervice **I**nterface **S**pecification diff --git a/security-blueprint/part-2/2-Communication-modes.md b/security-blueprint/part-2/2-Communication-modes.md index d3539f8..268da5d 100644 --- a/security-blueprint/part-2/2-Communication-modes.md +++ b/security-blueprint/part-2/2-Communication-modes.md @@ -1,6 +1,6 @@ # Communication modes -## Disable USB, Serial and Docsis Support +## Disable USB, Serial and DOCSIS Support To disable USB support in U-Boot, following config's shall not be defined: @@ -45,10 +45,10 @@ Boot-Communication-USB-5 | `CONFIG_USB_HOST_ETHER` | _Not defined_ -------------------------------------------------------------------------------- -## Disable all Network Interfaces +## Disable all unused Network Interfaces -Preferably no network interface is allowed, but if required, then the enabled -services should be restricted to only those used. +Only used network interfaces should be enabled. +Where possible, services should also be limited to those necessary. <!-- section-config --> diff --git a/security-blueprint/part-2/3-Consoles.md b/security-blueprint/part-2/3-Consoles.md index 366573b..0a8faed 100644 --- a/security-blueprint/part-2/3-Consoles.md +++ b/security-blueprint/part-2/3-Consoles.md @@ -21,8 +21,8 @@ Boot-Consoles-1 | Secure loader: No reference earlier? <!-- end-section-todo --> -And set "**silent**" environment variable. For the Secure loader, disable the -traces by undefined the below macro: +And set "**silent**" environment variable. For the Secure loader, +disable the traces by not defining the below macro: <!-- section-config --> |