GB/T 36630.3-2018

Active

Information security technology—Controllability evaluation index for security of information technology products—Part 3: Operating system

信息安全技术 信息技术产品安全可控评价指标 第3部分:操作系统

Standard Type
GBT
ICS
35.040
CCS
L80
Status
Active
Issue Date
2018-09-17
Implementation
2019-04-01
Centralized Committee
国家标准委
Issuing Authority
国家市场监督管理总局、中国国家标准化管理委员会

Application Summary AI generated

This standard defines a set of controllability evaluation indexes specifically for operating systems, focusing on assessing whether an OS product can be independently controlled and managed from a security perspective. It is applied by Chinese government agencies and critical infrastructure operators when procuring or reviewing operating systems to ensure they meet national requirements for data sovereignty, backdoor prevention, and supply chain security. The standard provides a technical framework for evaluating factors like source code transparency, update control, and vulnerability management in both domestic and foreign OS products.

Related Standards

Transparency note: The application summary and key sentences on this page were automatically generated by AI from the standard's original text. This content has not been human-verified and should not be used for compliance or regulatory purposes. Always refer to the official standard document from the issuing authority.