Security Enhancements

Security Enhancements

This section lists enhancements introduced to support Cisco Product Security Requirements and the Product Security Baseline (PSB). For more information about Cisco Product Security Requirements, refer to: https://www.cisco.com/c/en/us/about/security-center/security-programs/secure-development-lifecycle/sdl-process.html

PSB Requirements for 24.1.0 Release

Feature Summary and Revision History

Table 1. Summary Data

Applicable Product(s) or Functional Area

CPS/vDRA

Applicable Platform(s)

Not Applicable

Default Setting

Enabled – Always-on

Related Changes in This Release

Not Applicable

Related Documentation

Not Applicable

Table 2. Revision History

Revision Details

Release

First Introduced.

24.1.0

Feature Description

CPS PCRF meets the Cisco security guidelines and is aligned with the security features for 24.1.0 release. CPS now supports the following PSB requirements:

Table 3. CPS PSB Requirements

PSB Item

Description

CT2285: SEC-ASU-STATIC-3

Perform static analysis.

CT2286: SEC-CRY-PRIM-8.

Use approved cryptographic primitives and parameters.

CT2287: SEC-CRY-RANDOM-4

Use approved and well seeded random number generation.

CPS vDRA meets the Cisco security guidelines and is aligned with the security features for 24.1.0 release. vDRA now supports the following PSB requirements:

Table 4. vDRA PSB Requirements

PSB Item

Description

CT2287: SEC-CRY-RANDOM-4

Use approved and well seeded random number generation.

CT2286: SEC-CRY-PRIM-8

Use approved cryptographic primitives and parameters.

CT2285: SEC-ASU-STATIC-3

Perform static analysis.