SI-11 - Error Handling

a. Generate error messages that provide information necessary for corrective actions without revealing information that could be exploited; and b. Reveal error messages only to [Assignment: organization-defined personnel or roles].


ID: SI-11
Enhancements: 

Space Segment Guidance

Malicious code never sleeps, so antivirus definitions and heuristic models must stay current even when the craft cannot accept bulky signature files. Use a two-tier scheme. A compact onboard scanner blocks known worm vectors like autorun scripts and malformed CCSDS headers, while a ground-side sandbox executes new payload images, harvests emergent indicators, and ships back a delta ruleset measured in kilobytes. Load the delta through routine command traffic, store it in RAM, and roll it forward with each software patch, preserving protection without straining downlink budgets.