nis2-impl

Annex 6.8.1

Full text: this article's wording is third-party regulatory text. See the official source for the authoritative provision.

Mapped SPARTA techniques (18)

Techniques referencing this article

  • EX-0001.02Bus Traffic ReplayST0004
    addresses
    moderate
    derived

    Segmentation between bus segments (and between the bus and crosslink/payload-facing functions) bounds where replayed bus traffic can travel and which subsystems it reaches.

  • EX-0012.02Internal Routing TablesST0004
    addresses
    moderate
    derived

    Network segmentation defines the trust boundaries that internal routing tables enforce; segmentation discipline constrains the scope of damage from a routing-table rewrite.

  • EX-0014.02Bus Traffic SpoofingST0004
    addresses
    moderate
    derived

    Bus segmentation between high-trust and low-trust subsystems bounds where forged bus frames can travel and which subscribers consume them.

  • EXF-0010Payload Communication ChannelST0008
    addresses
    high
    derived

    Network segmentation between hosted payload and host-bus subsystems is the architectural control that prevents host-bus data from being routed into payload-side communications channels for covert exfiltration.

  • Network segmentation between crosslink-facing and bus-internal subsystems is the architectural defense that prevents a compromise on a neighboring vehicle from being a bridgehead onto the local spacecraft.

  • IA-0006Compromise Hosted PayloadST0003
    addresses
    high
    derived

    Network segmentation between hosted payload and host-bus subsystems is the architectural control that prevents payload-to-bus pivot; the implementing regulation requires segmentation based on risk-assessment-driven trust boundaries.

  • IA-0007Compromise Ground SystemST0003
    addresses
    high
    derived

    Network segmentation isolates operator workstations, mission-control servers, baseband chains and archive databases from each other and from corporate IT, so that one foothold does not yield ground-segment-wide command authority.

  • IA-0008.02Rogue SpacecraftST0003
    addresses
    moderate
    derived

    Segmentation between crosslink-facing functions and bus internals is the architectural lever that bounds what a rogue-spacecraft peer can reach even if it briefly occupies the RF geometry.

  • IA-0009.03User SegmentST0003
    addresses
    moderate
    derived

    Segmentation between user-segment networks and core mission systems is the architectural defense that prevents user-segment compromise from reaching commanding or telemetry-distribution backends.

  • IA-0013Compromise Host SpacecraftST0003
    addresses
    high
    derived

    Segmentation between hosted payload and host-bus subsystems is the architectural control that bounds the host's reach into the payload — the inverse direction of IA-0006 but the same segmentation discipline.

  • LM-0001Hosted PayloadST0007
    addresses
    high
    derived

    Network segmentation between hosted payload and host-bus subsystems is the architectural control that blocks payload-to-bus pivot via SpaceWire/1553/Ethernet gateways and shared file services.

  • LM-0002Exploit Lack of Bus SegregationST0007
    addresses
    high
    derived

    Lack of bus segregation is precisely the architectural deficiency the network-segmentation obligation is established to remedy: the implementing regulation requires segmentation based on risk-assessment-driven trust boundaries.

  • Segmentation between crosslink-facing functions and bus internals is the architectural defense that bounds how far a compromise on one constellation member can travel via inter-satellite links.

  • LM-0004Visiting Vehicle Interface(s)ST0007
    addresses
    high
    derived

    Segmentation between docking/berthing interfaces and main-bus subsystems is the architectural control that bounds the reach of a compromised visiting vehicle.

  • LM-0006Launch Vehicle InterfaceST0007
    addresses
    moderate
    derived

    Segmentation between launch-vehicle EGSE networks and operator/payload networks bounds the reach of a launch-side compromise into the entity's mission systems.

  • LM-0006.01Rideshare PayloadST0007
    addresses
    high
    derived

    Network segmentation between rideshare payloads (data buses, deployer controllers, telemetry collectors) is the architectural control that the implementing regulation requires to prevent inter-payload pivot before separation.

  • PER-0003Ground System PresenceST0005
    addresses
    high
    derived

    Network segmentation isolates persistent footholds from spreading across the ground segment; segmentation discipline limits the spacecraft-reachability of an attacker established on a single workstation.

  • Network segmentation is the precise architectural control that limits lateral mobility inside a compromised mission-operated ground system; the implementing regulation requires the entity to segment systems into networks or zones based on risk assessment.

Built 2026-07-25 from 216 techniques, 334 regulation articles, 125 ENISA controls, 2,610 framework controls, and 90 countermeasures.