SI-2 - Flaw Remediation

a. Identify, report, and correct system flaws; b. Test software and firmware updates related to flaw remediation for effectiveness and potential side effects before installation; c. Install security-relevant software and firmware updates within [Assignment: organization-defined time period] of the release of the updates; and d. Incorporate flaw remediation into the organizational configuration management process.


ID: SI-2
Enhancements:  2 | 3 | 4 | 5 | 6

Space Segment Guidance

Flaw remediation typically relies on carefully staged updates to flight software, FPGA bitstreams, and configuration tables. Consider dual-bank/rollback activation, chunked uploads with per-chunk verification and commit markers, resume across passes, and pre-activation checks in a digital twin/flatsat under realistic BER, latency, and thermal/power margins. Align hold/commit points and blackout windows to contact schedules; expose activation outcomes in telemetry (active bank, version IDs, verification status) so operators can confirm success or roll back within a pass. Ground enclaves may patch normally, but coordinate with command-release boards and pass plans to avoid operational conflicts.