Why the EU Cyber Resilience Act is Important
Episode 60: Better Built By Burkhard
Episode 60: Better Built By Burkhard
The eight requirements define how the manufacturer's process for vulnerability handling must look. They include identifying, addressing and publishing of vulnerabilities as well as timely security updates and generating an SBoM. The post gives practical examples how to do this.
Should we start with a modular monolith and gradually transform it into microservices? Or, should we start with microservices right away? My conclusion: We can use the best of both worlds with the ports-and-adapters architecture. We extract adapters as microservices when it makes sense.
When developing the operator terminals for their machines, OEMs must reinvent the wheel over and again. Each OEM implements home-grown solutions for standard features like OTA updates, user authentication, factory installation, machine gateways and IoT gateways. None of these features
Embedded systems must satisfy the 13 essential product properties like confidentiality, integrity, availability and access control. Otherwise, they violate the CRA and must not be placed on the market. The post illustrates the product properties with many practical examples.
Episode 57
Which devices are covered by the EU Cyber Resilience Act (EU CRA)? * An X-ray fluorescence (XRF) analyser connected with the Internet over WiFi. * A metal-sheet bending machine with an Ethernet port, which will only be used in the future. * The
Episode 56: Better Built By Burkhard
Episode 55: Better Built By Burkhard
Episode 54: Better Built By Burkhard
Episode 53: Better Built By Burkhard