China NAL certification 

NAL certification, issued by the Ministry of Industry and Information Technology (MIIT), is essential for telecommunications products that are connected to the public telecommunications network. The NAL label is issued by the MII and consists of the certification number, the model number of the device and a random code on a blue background.

For foreign manufacturers, NAL certification for affected telecommunications products is mandatory before a product can be imported and marketed in China.

Relevant product categories for the NAL certifications

The first product categories for NAL approval were introduced in 2001 and there are now 28 categories from three different main groups:

  • Telecommunications terminal equipment
  • Radio communication equipment
  • Telecommunication equipment for inter-network connection.

Meanwhile more than 300 telecommunication products are defined in the categories. These include communication or network equipment with interfaces to public networks or Wide Area Network (WAN) services. Common communication interfaces include T1/E1, ISDN BRI, ISDN PRI, ADSL, serial and analogue PSTN.

China SRRC Certification

The SRRC certification is issued by the State Radio Monitoring and Testing Center (SRRC) – analogous to the CCC certification. The SRRC certification is relevant for all mandatory directory products that use a radio transmitter in any form.

The SRRC label is primarily a word mark and represents the CMIIT ID, which the manufacturer receives from the authority during the approval process. Here it is important to note that without a CMIIT ID, no product may be imported into China and distributed there.

Core parameters for products with radio technologies

The necessary tests must be carried out in a test laboratory accredited by the Ministry of Industry and Information Technology (MIIT). The authority responsible for this is the State Radio Monitoring and Testing Center (SRTC). Part of the SRRC certification is the determination of core parameters of products with radio technologies. These include among others

  • Frequency
  • Frequency band
  • Transmission power
  • Frequency tolerance
  • occupied bandwidth
  • Parameters of the frequency spectrum (such as out-of-band emissions)

Only after a successful SRRC certification an application for a NAL certification can be made, because the test results of a SRRC certification are the basis for a NAL certification.

Products that require SRRC certification include mobile phones (GSM or CDMA), wireless LAN (WLAN) devices, and devices that use the following technologies

  • WLAN
  • Bluetooth
  • ZigbeeWiMAX
  • RFID

In the case of SRRC certification, it should be noted that the government body checks the frequencies selected for the product, so the manufacturer is obliged to correctly indicate the frequencies used by the device. Therefore, in order to obtain certification, the transmitting power, bandwidth and stray radiation must meet the requirements of the selected frequencies. In addition, some frequencies are not publicly available in China and manufacturers must also take this restriction into account.

EU – New Security and Privacy Requirements for Wireless IoT Devices

On October 29, 2021, European Commission adopted the delegated act to the Radio Equipment Directive (RED) which aim to reinforce the safety of all wireless devices sold on the EU market. The delegated act requires compliance to privacy and cyber security requirements of internet-connected radio equipment by mid-2024.

Baseline requirements are defined in ETSI EN 303 645 however based on risk, type of device and its intended use additional requirements may be applicable. 

The essential requirement set out in Article 3(3), point (e), of Directive 2014/53/EU shall apply to any of the following radio equipment, if that radio equipment is capable of processing, within the meaning of Article 4(2) of Regulation (EU) 2016/679, personal data, as defined in Article 4(1) of Regulation (EU) 2016/679, or traffic data and location data, as defined in Article 2, points (b) and (c), of Directive 2002/58/EC: 

– (a) internet-connected radio equipment, other than the equipment referred to in points (b), (c) or (d);
– (b) radio equipment designed or intended exclusively for childcare; 
– (c) radio equipment covered by Directive 2009/48/EC; 
– (d) radio equipment designed or intended, whether exclusively or not exclusively, to be worn on, strapped to, or hung from any of the following:

– any part of the human body, including the head, neck, trunk, arms, hands, legs and feet; 
– any clothing, including headwear, hand wear and footwear, which is worn by human beings;

3. The essential requirement set out in Article 3(3), point (f), of Directive 2014/53/EU shall apply to any internet-connected radio equipment, if that equipment enables the holder or user to transfer money, monetary value or virtual currency as defined in Article 2, point (d), of Directive (EU) 2019/713.

Key exclusions: selected medical devices, IVD, mobililty, aviation


Source Link: https://ec.europa.eu/commission/presscorner/detail/en/ip_21_5634

Radio Equipment Directive (RED)

The radio equipment directive 2014/53/EU (RED) establishes a regulatory framework for placing radio equipment on the market. It ensures a single market for radio equipment by setting essential requirements for safety and health, electromagnetic compatibility, and the efficient use of the radio spectrum. It also provides the basis for further regulation governing some additional aspects. These include technical features for the protection of privacy, personal data and against fraud. Furthermore, additional aspects cover interoperability, access to emergency services, and compliance regarding the combination of radio equipment and software.

Update on Articles 3(3)(d), (e) and (f) 

Commission strengthens cybersecurity of radio equipment

The Commission adopted a Delegated Act of the Radio Equipment Directive activating Articles 3(3)(d), (e) and (f) for certain categories of radio equipment to increase the level of cybersecurity, personal data protection and privacy.

Earlier, the Commission authorised a contractor to conduct an impact assessment study on protection in internet-connected radio equipment and wearable radio equipment.
Specifically, it focused on

  • the protection of personal data and privacy
  • the protection from fraud

Different options were considered, in line with the inception impact assessment.
See the final report of the study.

Update on Articles 3(3)(i) and 4

We ask the public and stakeholders to contribute to a data collection exercise. Based on this, we will perform an impact assessment of options that ensure that reconfigurable radio systems approved for Europe’s single market stay compliant with the Radio Equipment Directive after the installation of new or modified software.

The RED aligned the previous directive, the radio and telecommunication terminal equipment directive (1999/5/EC(R&TTED), with the new legislative framework

for the marketing of products.

The revision also took account of the need for improved market surveillance. In particular, for the traceability obligations of manufacturers, importers and distributors. It has improved market surveillance instruments. One example is the possibility for required preregistration of radio equipment in categories with low compliance levels.

The RED was published in the OJEU on 22 May 2014, entered into force on 11 June 2014 and is applicable as of 13 June 2016. It included a one-year transitional period, which ended on 12 June 2017 (Article 48). During the transitional phase, manufacturers were allowed to place on the market radio equipment compliant with either the RED or the EU legislation applicable before 13 June 2016 (e.g. R&TTED).

For more details on the application of the RED, see the RED guide under the guidance section below.