ML102360486: Difference between revisions
StriderTol (talk | contribs) (Created page by program invented by StriderTol) |
StriderTol (talk | contribs) (StriderTol Bot change) |
||
(One intermediate revision by the same user not shown) | |||
Line 16: | Line 16: | ||
=Text= | =Text= | ||
{{#Wiki_filter:Rullemaking Resource From: wmartin@scana.com Sent: Wednesday, August 18, 2010 11:04 AM To: Rulemaking Resource | {{#Wiki_filter:Rullemaking Resource From: wmartin@scana.com Sent: Wednesday, August 18, 2010 11:04 AM To: Rulemaking Resource | ||
==Subject:== | ==Subject:== | ||
Response from "Contact Us About Rulemaking-Ruleforum" Below is the result of your feedback form. It was submitted by (wmartin(cscana.com) on Wednesday, August 18, 2010 at 11:04:28 | Response from "Contact Us About Rulemaking-Ruleforum" Below is the result of your feedback form. It was submitted by | ||
VC Summer comments regarding DG-1 249: 1. The draft DG relies heavily on the Vendor having a secure development environment. | ~{L (wmartin(cscana.com) on Wednesday, August 18, 2010 at 11:04:28 | ||
The draft regulatory guide should recommend developing a procurement specification for Digital Safety Systems that meet the regulatory guide.2. Section 2.1 Concepts Phase, last sentence states that the NRC has positions and guidance on data communication between non-safety and safety digital systems. The documents associated with these NRC positions and guidance should be listed.3. RG 5.71 Security Control, C.12.5 Developer Security Testing, provides criteria for system developers and integrators of acquired CDAs to create, implement, and document a security test and evaluation plan. DG-1249 should align with the criteria in RG 5.71.name: organization: | / | ||
address1: address2: city: state: SC zip: country: phone: | comments: VC Summer comments regarding DG-1 249: | ||
: 1. The draft DG relies heavily on the Vendor having a secure development environment. The draft regulatory guide should recommend developing a procurement specification for Digital Safety Systems that meet the regulatory guide. | |||
: 2. Section 2.1 Concepts Phase, last sentence states that the NRC has positions and guidance on data communication between non-safety and safety digital systems. The documents associated with these NRC positions and guidance should be listed. | |||
: 3. RG 5.71 Security Control, C.12.5 Developer Security Testing, provides criteria for system developers and integrators of acquired CDAs to create, implement, and document a security test and evaluation plan. DG-1249 should align with the criteria in RG 5.71. | |||
name: | |||
organization: VT]i or m | |||
address1: C, 0t ) | |||
JC-address2: | |||
VT] m city: | |||
Fr state: SC zip: | |||
country: | |||
phone: | |||
193AI(_0i}} | 193AI(_0i}} |
Latest revision as of 19:47, 11 March 2020
ML102360486 | |
Person / Time | |
---|---|
Site: | Summer |
Issue date: | 08/18/2010 |
From: | Martin W SCANA Corp |
To: | Rulemaking, Directives, and Editing Branch |
References | |
75FR35508 00001, DG-1249 | |
Download: ML102360486 (1) | |
Text
Rullemaking Resource From: wmartin@scana.com Sent: Wednesday, August 18, 2010 11:04 AM To: Rulemaking Resource
Subject:
Response from "Contact Us About Rulemaking-Ruleforum" Below is the result of your feedback form. It was submitted by
~{L (wmartin(cscana.com) on Wednesday, August 18, 2010 at 11:04:28
/
comments: VC Summer comments regarding DG-1 249:
- 1. The draft DG relies heavily on the Vendor having a secure development environment. The draft regulatory guide should recommend developing a procurement specification for Digital Safety Systems that meet the regulatory guide.
- 2. Section 2.1 Concepts Phase, last sentence states that the NRC has positions and guidance on data communication between non-safety and safety digital systems. The documents associated with these NRC positions and guidance should be listed.
- 3. RG 5.71 Security Control, C.12.5 Developer Security Testing, provides criteria for system developers and integrators of acquired CDAs to create, implement, and document a security test and evaluation plan. DG-1249 should align with the criteria in RG 5.71.
name:
organization: VT]i or m
address1: C, 0t )
JC-address2:
VT] m city:
Fr state: SC zip:
country:
phone:
193AI(_0i