nis2

Art. 21(2)(i)

Full text: this article's wording is third-party regulatory text. See the official source for the authoritative provision.

Mapped SPARTA techniques (69)

Techniques referencing this article

  • DE-0001Disable Fault ManagementST0006
    addresses
    moderate
    direct

    FDIR rule tables, watchdog/heartbeat thresholds, sanity checks, command interlocks, inhibit masks, and voting/redundancy logic are first-class access-controlled engineering configuration; Art. 21(2)(i) governs which roles can edit them.

  • Ground processing pipelines, telemetry display interfaces, and alert-routing services are the precise asset class Art. 21(2)(i)'s access-control + asset-management obligation governs.

  • Telemetry publishers, packet filters, rate controls, event/report channels, and recorder-playback configuration are access-controlled assets; Art. 21(2)(i) governs which roles can disable, mute, or reroute on-board telemetry generation.

  • DE-0003On-Board Values ObfuscationST0006
    addresses
    moderate
    direct

    Mode controls, counter registers, and reporting-configuration parameters are access-controlled assets; Art. 21(2)(i) governs which paths can manipulate the values operators rely on.

  • DE-0003.03Command Receiver On/Off ModeST0006
    addresses
    moderate
    direct

    Per-receiver/per-antenna/per-band enable states are access-controlled engineering configuration; Art. 21(2)(i) governs which roles can toggle command-receiver state.

  • AGC parameters and signal-to-noise thresholds are access-controlled engineering configuration; Art. 21(2)(i)'s access-control + asset-management obligation governs which roles can modify them.

  • DE-0003.06Telemetry Downlink ModesST0006
    addresses
    moderate
    direct

    Telemetry-mode controls, recorder-playback configuration, and per-VCID/APID selection parameters are access-controlled engineering configuration; Art. 21(2)(i) governs which roles can switch modes or thin observability.

  • DE-0003.07Cryptographic ModesST0006
    addresses
    moderate
    direct

    Crypto-mode selectors and algorithm-profile registers are access-controlled assets; Art. 21(2)(i)'s access-control + asset-management obligation governs which sessions and roles can alter them.

  • DE-0003.11Watchdog Timer (WDT) for EvasionST0006
    addresses
    moderate
    direct

    Watchdog parameters (timeout durations, windowed bounds, prescalers, reset-action ladders, petting-source registers) are access-controlled assets; Art. 21(2)(i)'s access-control + asset-management obligation governs which paths can edit them.

  • DE-0005Subvert Protections via Safe-ModeST0006
    addresses
    moderate
    inferred

    DE-0005 exploits safe-mode relaxed authentication, timetag screening and interlocks to get maintenance-looking commands accepted; NIS2 21(2)(i) access control policies govern keeping authentication from being improperly relaxed across operating modes.

  • DE-0006Modify WhitelistST0006
    addresses
    high
    direct

    Allowlists/whitelists are first-class access-controlled configuration that decides what executes; Art. 21(2)(i)'s access-control + asset-management obligation governs which roles and paths can edit them.

  • DE-0010Overflow Audit LogST0006
    addresses
    moderate
    direct

    Log buffer parameters (severity filters, per-subsystem quotas, dump-window scheduling) and recorder/event catalogs are access-controlled engineering configuration; Art. 21(2)(i)'s access-control + asset-management obligation governs edits that change retention behaviour.

  • DE-0011Credentialed EvasionST0006
    addresses
    moderate
    inferred

    DE-0011 leverages valid credentials to act undetected where credential use is poorly segmented or monitored; NIS2 21(2)(i) access control policies and asset management govern this risk.

  • EX-0003Modify Authentication ProcessST0004
    addresses
    moderate
    inferred

    EX-0003 subverts command authentication and authorization (short-circuited MAC checks, widened anti-replay windows, altered policy tables); NIS2 21(2)(i) access control policies govern the integrity of the authority-validation this technique attacks.

  • Maintenance/contingency-mode hardware command sets, register-write opcodes, fuse-programming sequences, and built-in-test commands are access-controlled functions; Art. 21(2)(i)'s access-control + asset-management obligation governs which roles/sessions can issue them.

  • EX-0009.02Operating SystemST0004
    addresses
    moderate
    direct

    Maintenance shells, management consoles, and privileged syscall paths are access-controlled functions; Art. 21(2)(i)'s access-control + asset-management obligation governs which roles can reach them and under what conditions.

  • EX-0011 exploits relaxed authentication and interlocks during safe-mode to get unauthorised commands accepted; NIS2 21(2)(i) access control policies govern keeping command authentication from being improperly relaxed across operating modes.

  • EX-0012Modify On-Board ValuesST0004
    addresses
    high
    direct

    Direct memory read/write commands, table-load services, file transfers, and maintenance procedures are access-controlled functions; Art. 21(2)(i)'s access-control + asset-management obligation governs which roles can invoke them and how their use is audited.

  • EX-0012.01RegistersST0004
    addresses
    moderate
    direct

    Internal-register write commands are access-controlled functions; Art. 21(2)(i)'s access-control + asset-management obligation governs which sessions and roles can issue them.

  • EX-0012.02Internal Routing TablesST0004
    addresses
    moderate
    direct

    Pub/sub maps, opcode-handler bindings, and bus routing tables are access-controlled configuration assets; Art. 21(2)(i)'s access-control + asset-management obligation governs the edits that reshape control and visibility.

  • EX-0012.03Memory Write/LoadsST0004
    addresses
    high
    direct

    Direct-memory write/load services, block loaders, and file-loaders that copy content into working memory are precisely the access-controlled functions Art. 21(2)(i)'s access-control + asset-management obligation governs.

  • EX-0012.04App/Subscriber TablesST0004
    addresses
    moderate
    direct

    Subscriber/application tables and 1553 RT/subaddress configurations are access-controlled configuration assets; Art. 21(2)(i)'s access-control + asset-management obligation governs the edits that reshape who hears what and when.

  • EX-0012.05Scheduling AlgorithmST0004
    addresses
    moderate
    direct

    Scheduler parameters (priorities, periods, deadlines, CPU budgets, watchdog thresholds, tick rates) are access-controlled real-time configuration; Art. 21(2)(i)'s access-control + asset-management obligation governs which roles can edit them.

  • EX-0012.06Science/Payload DataST0004
    addresses
    moderate
    direct

    Mass-memory file catalogs, recorder indices, and Level-0 stream stores are access-controlled assets; Art. 21(2)(i)'s access-control + asset-management obligation governs who can rewrite frame headers, reorder packets, or substitute segments.

  • EX-0012.07Propulsion SubsystemST0004
    addresses
    moderate
    direct

    Propulsion calibration values, valve timing limits, inhibit masks, delta-V tables, and momentum-management coupling are access-controlled engineering configuration; Art. 21(2)(i)'s access-control + asset-management obligation governs which roles can modify them.

  • Star-tracker masks, sensor alignments, gyro biases, estimator covariances, controller gains, and actuator saturation limits are access-controlled engineering configuration; Art. 21(2)(i)'s access-control + asset-management obligation governs edits to those parameters.

  • EX-0012.09Electrical Power SubsystemST0004
    addresses
    moderate
    direct

    EPS limits, MPPT setpoints, battery thresholds, LCL trip/retry settings, and load-shed priorities are access-controlled engineering configuration; Art. 21(2)(i)'s access-control + asset-management obligation governs edits to those parameters.

  • EX-0012.10Command & Data Handling SubsystemST0004
    addresses
    moderate
    direct

    Opcode-to-handler maps, argument schemas, queue depths, message-ID routing, pub/sub bindings, and timeline entries are precisely the access-controlled C&DH configuration Art. 21(2)(i)'s access-control + asset-management obligation governs.

  • EX-0012.11Watchdog Timer (WDT)ST0004
    addresses
    moderate
    direct

    Watchdog control registers, prescaler settings, and reset-ladder configuration are access-controlled assets; Art. 21(2)(i)'s access-control + asset-management obligation governs which paths can disable, mask, or alter the WDT supervision regime.

  • EX-0012.12System ClockST0004
    addresses
    moderate
    direct

    Clock registers, time-distribution services, and disciplining-source configuration are access-controlled assets; Art. 21(2)(i)'s access-control + asset-management obligation governs which roles can write them.

  • EX-0012.13Poison AI/ML Training DataST0004
    addresses
    moderate
    direct

    Training corpora and test vectors are access-controlled assets; Art. 21(2)(i)'s access-control + asset-management obligation governs who can submit, label, or modify the data on which on-board models are trained.

  • EX-0013.01Valid CommandsST0004
    addresses
    moderate
    direct

    Per-session rate limits, per-account quotas, and queue-priority configuration are the access-control discipline Art. 21(2)(i) governs — bounding the resource impact a single legitimate-but-misused identity can produce.

  • EX-0014.01Time SpoofST0004
    addresses
    moderate
    direct

    Time-distribution services, disciplining-source selection, and clock-register access are access-controlled functions; Art. 21(2)(i)'s access-control + asset-management obligation governs who can write them.

  • EXF-0006Modify Communications ConfigurationST0008
    addresses
    moderate
    direct

    Radio/optical configuration commands, virtual-channel/APID remappings, beacon content edits, and regenerative-payload routing tables are access-controlled assets; Art. 21(2)(i)'s access-control + asset-management obligation governs which roles can issue them and how their use is audited.

  • EXF-0006.02TransponderST0008
    addresses
    moderate
    direct

    Transponder routing/translation tables and gain/polarization controls are access-controlled assets; Art. 21(2)(i)'s access-control + asset-management obligation governs which roles can remap input-output paths or enable auxiliary ports that bypass mission distribution.

  • EXF-0007Compromised Ground SystemST0008
    addresses
    high
    direct

    Operator workstations, telemetry processing pipelines, and archive databases are access-controlled assets; Art. 21(2)(i)'s access-control + asset-management obligation governs who reaches them and the boundary between mission-data and exfiltration paths.

  • IA-0006Compromise Hosted PayloadST0003
    addresses
    high
    direct

    Hosted-payload command sets, file services, telemetry paths, and gateway processors that bridge to the host bus are the precise asset class Art. 21(2)(i)'s access-control + asset-management obligation governs.

  • IA-0007Compromise Ground SystemST0003
    addresses
    high
    direct

    Operator workstations, MCC software, schedulers, modems, antenna control, key-loading tools, HSMs, SLE/CSP gateways, and identity providers are precisely the asset class Art. 21(2)(i)'s access-control + asset-management obligation governs.

  • Command queues, procedure libraries, dictionaries, and rapid-response/maintenance workflows are access-controlled assets; Art. 21(2)(i) is the obligation that constrains who can edit them and how their use is audited.

  • IA-0009.03User SegmentST0003
    addresses
    moderate
    direct

    User-plane and control/management-plane separation is access-control discipline; Art. 21(2)(i)'s access-control + asset-management obligation governs the gateways through which user-segment traffic must not reach mission cores.

  • IA-0010Unauthorized Access During Safe-ModeST0003
    addresses
    moderate
    inferred

    IA-0010 gains first execution during safe-mode by exploiting relaxed authentication, anti-replay and command-set restrictions; NIS2 21(2)(i) access control policies govern keeping authentication consistent across operating modes.

  • IA-0011Auxiliary Device CompromiseST0003
    addresses
    moderate
    direct

    Peripherals, removable media, and lab-formatting tools are assets whose connection to flight hardware must be governed by access-control + asset-management discipline under Art. 21(2)(i).

  • Test controllers, EGSE, simulators, flatsats, loaders, and golden artefacts are precisely the asset class Art. 21(2)(i)'s access-control + asset-management obligation governs — including the lab-network bridges between otherwise separate enclaves.

  • IA-0013Compromise Host SpacecraftST0003
    addresses
    high
    direct

    Bus/payload data routes, shared processors, and communication links are the asset class Art. 21(2)(i)'s access-control + asset-management obligation governs — preventing the bus's compromise from cascading into the hosted payload through shared internal interfaces.

  • IMP-0006TheftST0009
    addresses
    moderate
    direct

    Mission-critical data is an asset whose access must be governed by access-control policies and asset-management discipline under Art. 21(2)(i); least-privilege role design constrains who can stage exfiltration.

  • LM-0001Hosted PayloadST0007
    addresses
    high
    direct

    Gateway processors, file services, table-load endpoints, time/ephemeris distribution paths, and shared backplanes between payload and bus are precisely the asset class Art. 21(2)(i)'s access-control + asset-management obligation governs.

  • Bus-segregation, role enforcement on remote terminals/bus controllers, and gateway-bridge access controls are the precise asset class Art. 21(2)(i)'s access-control + asset-management obligation governs — preventing any peripheral that can transmit from gaining system-wide influence.

  • LM-0003Constellation Hopping via CrosslinkST0007
    addresses
    moderate
    direct

    Crosslink gateway functions that bridge into command/data paths are access-controlled assets; Art. 21(2)(i)'s access-control + asset-management obligation governs which crosslink message classes can reach which onboard subscribers.

  • LM-0005Virtualization EscapeST0007
    addresses
    moderate
    direct

    Inter-partition communication ports, shared-memory windows, hypercalls, and DMA-engine permissions are access-controlled isolation boundaries; Art. 21(2)(i)'s access-control + asset-management obligation governs which partitions can invoke which inter-partition mechanisms.

  • LM-0006Launch Vehicle InterfaceST0007
    addresses
    moderate
    direct

    Umbilicals, EGSE workstations, separation avionics, and inhibit/telemetry-gateway lines are access-controlled assets; Art. 21(2)(i)'s access-control + asset-management obligation governs which roles can issue commissioning-link traffic across the LV/payload boundary.

  • LM-0007Credentialed TraversalST0007
    addresses
    moderate
    inferred

    LM-0007 crosses enclave and vehicle boundaries by reusing operator, service and station credentials where roles and scopes are broad or reused; NIS2 21(2)(i) access control policies and asset management govern this risk.

  • PER-0003Ground System PresenceST0005
    addresses
    high
    direct

    Operator workstations, schedulers/orchestrators, station-control systems, automation scripts, procedure libraries, identity/ticketing systems, and cloud-hosted mission services are precisely the asset class Art. 21(2)(i)'s access-control + asset-management obligation governs.

  • PER-0004Replace Cryptographic KeysST0005
    addresses
    high
    direct

    Keys, key-encryption keys, key identifiers, algorithm profiles, and rekey command sequences are first-class access-controlled assets; Art. 21(2)(i) governs which roles can author, transport, or invoke key-loading procedures.

  • PER-0005Credentialed PersistenceST0005
    addresses
    moderate
    inferred

    PER-0005 sustains access using valid credentials where credential lifecycle management, segmentation and asset management are weak; NIS2 21(2)(i) access control policies and asset management is the measure that governs this risk.

  • RD-0002Compromise InfrastructureST0002
    addresses
    high
    direct

    Mission control servers, automation/scheduling systems, SLE/CSP gateways, identity providers, and cloud data paths are the precise asset class Art. 21(2)(i)'s access-control + asset-management obligation governs across enclaves.

  • Operator workstations, mission control servers, procedure libraries, scheduler/orchestration services, key-loading tools/HSMs, and timing distribution are the precise asset class Art. 21(2)(i)'s access-control + asset-management obligation governs.

  • RD-0003.02Cryptographic KeysST0002
    addresses
    high
    direct

    Keys, KEKs, key-loading tools, HSMs, and recovery procedures are first-class access-controlled assets; Art. 21(2)(i) is the obligation that constrains who can read, transport, or operate them.

  • ICDs, block diagrams, SBOMs, AIT travelers, and as-built/as-flown deltas are sensitive engineering assets; access-control policies and asset-management discipline under Art. 21(2)(i) govern who can reach them and how leakage from contractor laptops, RFP appendices, or vendor manuals is constrained.

  • REC-0001.01Software DesignST0001
    addresses
    moderate
    direct

    Source code, stripped images with recognizable patterns, configuration tables, and test harnesses are mission-critical assets whose disclosure access-control policies and asset-management practices under Art. 21(2)(i) must restrict.

  • REC-0001.03Cryptographic AlgorithmsST0001
    addresses
    moderate
    direct

    Keys, counters, and MAC parameters are first-class access-controlled assets; Art. 21(2)(i) constrains who can read, transport, or load them through the integration and operations chain.

  • REC-0001.04Data BusST0001
    addresses
    moderate
    direct

    Bus ICDs, harness drawings, AIT photos, and schedule tables are sensitive engineering assets; access-control + asset-management discipline under Art. 21(2)(i) governs who can extract them from labs, vendor sites, or document repositories.

  • REC-0001.07PayloadST0001
    addresses
    moderate
    direct

    Payload ICDs, command sets, gateway locations, and engineering-telemetry mnemonics are the precise asset class Art. 21(2)(i)'s access-control + asset-management requirement is meant to govern, particularly where payload traffic bridges to C&DH networks.

  • REC-0001.09Fault ManagementST0001
    addresses
    moderate
    direct

    FDIR docs, autonomy rule tables, FMEAs, and anomaly response playbooks describe how the spacecraft fails safe; they are sensitive operational assets whose disclosure Art. 21(2)(i)'s access-control + asset-management obligation is meant to constrain.

  • REC-0002.02OrganizationST0001
    addresses
    moderate
    direct

    Access-control policies under Art. 21(2)(i) are how the entity decides who holds admin/approval/funding-routing roles in the first place; least-privilege design limits the value of any single account a recon-driven phish could bridge.

  • REC-0003.02Commanding DetailsST0001
    addresses
    moderate
    direct

    Command dictionaries/databases, enable-code stores, and procedure libraries are access-controlled assets; Art. 21(2)(i) governs who within and outside the entity can read them.

  • REC-0003.04Valid CredentialsST0001
    addresses
    high
    direct

    Mission control accounts, modem credentials, station-control credentials, VPN tokens, SLE/CSP service credentials, and CI/CD secrets are precisely the asset class Art. 21(2)(i)'s access-control + asset-management obligation governs across issuance, storage, rotation, and revocation.

  • Repositories, CI/CD orchestrators, code-signing services/HSMs, defect trackers, and SIL/HIL rigs are the precise asset class Art. 21(2)(i)'s access-control + asset-management obligation governs.

  • REC-0006.01Development EnvironmentST0001
    addresses
    high
    direct

    Repositories, protected branches/tags, CI orchestrators, package registries, and signing tokens are access-controlled assets; Art. 21(2)(i)'s access-control + asset-management discipline governs which roles can read or alter them.

  • REC-0008Gather Supply Chain InformationST0001
    addresses
    moderate
    direct

    Procurement artefacts, SBOMs/BOMs, key certificates, and service contracts are access-controlled assets; Art. 21(2)(i) is the obligation that constrains who can compile or extract the choke-point map an adversary would otherwise harvest.

Built 2026-07-25 from 216 techniques, 334 regulation articles, 125 ENISA controls, 2,610 framework controls, and 90 countermeasures.