SI-7(8) - Software, Firmware, and Information Integrity | Auditing Capability for Significant Events

Upon detection of a potential integrity violation, provide the capability to audit the event and initiate the following actions: [Selection (one or more): generate an audit record; alert current user; alert [Assignment: organization-defined personnel or roles] ; [Assignment: organization-defined other actions] ].


ID: SI-7(8)
Enhancement of : SI-7

Space Segment Guidance

Auditing significant integrity events supports reconstruction and assurance. Consider recording what component was verified, versions and hashes, signer/key index, result codes, station/operator context, and any automated actions or fallbacks. Compact digests (e.g., hash chains, per-chunk results) help preserve evidence when only summaries can be downlinked.