Article 11–Article 14 · 4 articles
Compiled from an official source version. Later amendments or repeals may not be reflected; the official text prevails. · Read the official text ↗
Safety requirements
1. The application data of the electronic central register shall be backed up and the backup copies shall be stored for the purposes of disaster recovery.
2. In the event that any security issues are detected, EBA shall be able to immediately shut down the application of the electronic central register and prevent any access to the server.
3. The application of the electronic central register shall be able to recover from crashes without undue delay and to continue its normal operation.
4. In the event that the application of the electronic central register is down and cannot process batch files transmitted by the competent authorities, that application shall process the most recent files which were transmitted by each competent authority after restoring its normal operation.
5. EBA shall notify the competent authorities of any failure or down-time of the application of the electronic central register.
6. Where a failure of the application of the electronic central register has affected the processing of a batch file transmitted by a competent authority, EBA shall request the competent authority to submit a new batch file. Where the competent authority is unable to do so, it shall request EBA to roll-back the data to the version that was submitted with the last validated batch file prior to the failure.
7. EBA shall develop its register in accordance with the international standards for cyber security.
Availability and performance requirements
1. The electronic central register shall be able to accommodate the initial set of data currently existing in the public registers maintained by the competent authorities.
2. The application of the electronic central register shall be able to accommodate an increase in the volume of the information received from competent authorities. Such an increase shall not affect the availability of the register.
3. EBA shall ensure that the electronic central register becomes available immediately after normal operation has been restored following any failure of the application of the register.
4. The automated transmission of information referred to in Article 7 shall not affect the availability of the electronic central register.
5. EBA shall inform public users of any unavailability of the electronic central register as well as of the reasons for that unavailability and the recovery of that register by displaying that information on its website
Maintenance and support requirements
1. EBA shall monitor the operation of the application of the register, analyse its performance and, where necessary, introduce changes to ensure that the application complies with the requirements set out in this Regulation.
2. EBA shall monitor the regular transmission and update of information in the electronic central register by the competent authorities.
3. EBA shall review the suitability of the non-functional requirements specified in this Chapter on a regular basis.
4. EBA shall provide support to the competent authorities in relation to the operation of the electronic central register. For that purpose EBA shall introduce a functionality in the application of the register enabling competent authorities to submit a query. EBA shall put all such queries in a queue.
5. EBA shall respond to the queries referred to in paragraph 4 without undue delay by the end of the day on which the query was made. EBA shall respond to the queries in order of reception.
6. EBA shall provide the competent authorities with a testing environment and support for that technical environment.
7. EBA shall establish a designated channel for communication of incidents related to the operation of the electronic central register.
Audit trail
1. The electronic central register shall enable recording of all the information transmitted by competent authorities to EBA.
2. The electronic central register shall enable recording of all automated or manual actions performed by the applications of the national public registers or by internal users respectively, as well as the time when those actions were performed.
3. EBA shall be able to access the data recorded pursuant to paragraphs 1 and 2.
4. EBA shall be able to extract reports from the data recorded pursuant to paragraphs 1 and 2 which enable it to monitor and interpret the information transmitted by the competent authorities.
Source: EUR-Lex (Publications Office of the EU), © European Union, reuse permitted under Commission Decision 2011/833/EU.