Draft Details

Number:Draft ETSI EN 304 625 V1.0.0 (2026-08)
Source:NSAI
Committee:NSAI/TC 2
Committee name:ICT
Review published:10 Aug 2026
Review end date:02 Oct 2026
Categories:General
Contact email:nepadmin(at)nsai.ie
Draft Scope:

The present document specifies technical requirements and corresponding assessment criteria for physical and virtual 
network interfaces related to cybersecurity. The products with digital elements in scope, thereafter "network interfaces": 
• are specified within the "technical description" of the "category of product" number "10" by the Commission 
Implementing Regulation (EU) 2025/2392 [i.2] as:  
"Physical network interfaces are products with digital elements that directly connect a device to a network via 
an Application Programming Interface (API) provided by the interface drivers, typically operating at the data 
link layer, and that feature hardware adapters to transmission media with corresponding firmware, typically 
operating at the physical and data link layer. 
Virtual network interfaces are products with digital elements that directly or indirectly connect a device to a 
network via an API that emulates that of drivers of physical network interfaces, typically operating at the data 
link layer. 
This category includes but is not limited to wired and wireless network interface cards, controllers and 
adapters, such as for Wi-Fi®, Ethernet, IrDA, USB, Bluetooth, NearLink, Zigbee®, or Fieldbus, as well as 
purely virtual standalone products, such as virtual network interface cards, container network interfaces and 
VPN interfaces". 
• are only covered within the product context described in clause 4. 
The present document covers those products to demonstrate compliance with essential cybersecurity requirements in the 
Regulation (EU) 2024/2847 [i.1], Annex I Part I under the conditions identified in Annex A. 
Network interfaces intended for use in the industrial Operational Technology (OT) domain are excluded from the scope 
of the present document, see prEN 50770 series [i.5]. 
Network interfaces whose intended purpose includes management or configuration of the product over the attached 
network are excluded from the present document. 
Network interfaces whose intended purpose includes routing, switching; or transfer of information from one attached 
network to a different attached network are excluded from the present document.

You may comment on any clause of this document. Simply enter the clause number, make your comment and your proposed changed text for each clause, subclause, paragraph, table or figure.

All comments are checked by a moderator before they are made public on the site. This is to ensure that improper language or marketing is not placed on the site – we will not judge or modify technical content. Similarly, we will not correct your grammar or spelling