SI-7(10) - Software, Firmware, and Information Integrity | Protection of Boot Firmware

Implement the following mechanisms to protect the integrity of boot firmware in [Assignment: organization-defined system components]: [Assignment: organization-defined mechanisms].


ID: SI-7(10)
Enhancement of : SI-7

Space Segment Guidance

Protecting boot firmware may involve write protection outside authorized windows, signature checks on changes, anti-rollback/version monotonicity, and power-fail-safe updates (A/B with commit markers). Consider how radiation effects, resets, and safe-mode transitions interact with these protections, and expose update attempts/outcomes in telemetry so recovery remains possible without risking lockout.