Page tree

European Commission Digital

Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Content Layer
background-color$whiteColor
id240230985
Content Column
background-color$whiteColor
width100.0%
id405661201
Content Block
background-color$whiteColor
margin0px 30px 0px 0px
overflowvisible
id405661203
Div
classcol-md-3 terciary-nav
Div
classcolwrapper
Page Tree
rootDIGITAL:Services eDelivery
Div
classcol-md-9
Div
classcolwrapper

Security Controls guidance


The 'Security Controls' guidance document addresses the security controls and recommendations applicable to CEF eDelivery's message exchange Use Case.


HTML Wrap
padding10px 10px 10px 20px
border-sideleft
border-color#ececec
border-width1px
border-stylesolid

According to ISO 27001, controls are any administrative, managerial, technical, or legal methods that are used as safeguards and countermeasures to modify or manage information security risks. In this document, security controls represent the technical mechanisms to be put in place to ensure confidentiality and integrity and consequently address the security requirements extracted from the eIDAS regulation.


As the message exchange Use Case is closely linked to the Electronic Registered Delivery Service (ERDS), a trust service under the eIDAS regulation, this document maps the Qualified ERDS (QERDS) requirements to the security controls of eDelivery. In this document, the message exchange Use Case uses the AS4 messaging protocol, according to the e-SENS profile, without dynamic discovery i.e. without the Service Metadata Publisher (SMP) and the Service Metadata Locator (SML).


HTML Wrap
padding10px 10px 10px 20px
border-sideleft
border-color#ececec
border-width1px
border-stylesolid

The eIDAS regulation defines Electronic Registered Delivery Service (ERDS) as a service that makes it possible to transmit data between third parties by electronic means and provides evidence relating to the handling of the transmitted data, including the proof of sending and receiving the data, and that protects transmitted data against the risk of loss, theft, damage or any unauthorised alterations. 



Documentation


Section
Column
width20%

 

Column
width80%

Security Controls guidance document
Linking eIDAS (Q)ERDS & CEF eDelivery

Last updated: 14 December 2018


HTML Wrap
classprocesspagenavbottom

Page Turner