Spyderisk / system-modeller

Spyderisk web service and web client
Other
4 stars 4 forks source link

Control coverage ignored? #124

Open mike1813 opened 10 months ago

mike1813 commented 10 months ago

In control strategies composed only of mandatory controls, the blocking effect of the CSG is supposed to be the minimum between the CSG default blocking effect, and the coverage levels of its mandatory controls.

I am reasonably sure this was tested using the small SSM-Testing domain model when it was inserted into the code. But I noticed that it doesn't make any difference to reduce the coverage levels of controls.

Needs investigating and fixing.

mike1813 commented 10 months ago

This is presumably a bug in the Risk Calculator, so I'll take a look at it myself when I get a moment.