CHTS requirement clause

4.5.4.8 — Replace GPF Security Credentials

3 technical records havebeen identified at this reference: 2 Section 20 items and 1 explicit clause reference. The links below describe documented interfaces and observable effects; they do not assert compliance with the source requirement.

CHFGPFAlert touchpoint onlySRV touchpoint
2

Atomic items

Section 20 objects, attributes or methods at this source reference.

7

Documented touchpoints

Typed relationships supported by source mapping rows.

1

Linked SRVs

Unique retained services reached through exact control rows.

5

Linked alerts

Explicit requirement-to-alert references.

CHTS4.5.4.8 · item DeviceSecurityCredentials.method: replaceSecurityCredentials

DeviceSecurityCredentials - replaceSecurityCredentials

SRV touchpoint

Processing is as required in the GBCS in section 13 which will result in the device storing the data in DeviceSecurityCredentials(DigitalSigning).value, if all checks are passed

Object
DeviceSecurityCredentials
Attribute / method
method: replaceSecurityCredentials
Interface disposition
E
Category
Method
Section 20 meaning
Processing is as required in the GBCS in section 13 which will result in the device storing the data in DeviceSecurityCredentials(DigitalSigning).value, if all checks are passed

Documented touchpoints

Evidence:source paragraph 443, 444Section 20 row 1271

CHTS4.5.4.8 · item DeviceSecurityCredentials.methodInput: certificate

DeviceSecurityCredentials - certificate

SRV touchpoint

The Certificate to be processed by the replaceSecurityCredentials method

Object
DeviceSecurityCredentials
Attribute / method
methodInput: certificate
Interface disposition
E
Category
Method Input
Section 20 meaning
The Certificate to be processed by the replaceSecurityCredentials method

Documented touchpoints

Evidence:source paragraph 443, 444Section 20 row 1272

CHTS4.5.4.8 · item clause.4.5.4.8

Replace GPF Security Credentials

Alert touchpoint only

This source clause is explicitly referenced by the GBCS device alert table.

Category
Alert reference

Documented touchpoints

  • Alert touchpointGPF0x8F70Update Security Credentials
  • Alert touchpoint0x8F4EDevice's own Key Agreement Certificate replacement failed
  • Alert touchpoint0x8F4DDevice's own Digital Signing Certificate replacement succeeded
  • Alert touchpoint0x8F4FDevice's own Key Agreement Certificate replacement succeeded
  • Alert touchpoint0x8F4CDevice's own Digital Signing Certificate replacement failed
Evidence:source paragraph 443, 444

How to read this page

Evidence is kept at record level

A source clause can contain several separately mapped Section 20 items and an explicit alert reference. One item may be read by an SRV, another updated by a different service, and another have only an Alert or local-HAN path. Accordingly, the clause summary does not collapse those distinctions into a single covered or uncovered result.