Specifications

90
O.MANAGE
The FMT requirements are used to satisfy this management objective, as well as other
objectives that specify the control of functionality. The requirement’s rationale for this
objective focuses on the administrator’s capability to perform management functions in
order to control the behavior of security functions.
FMT_MOF.1(1)(2) and (3) ensure that the administrator has the ability manage the
cryptographic, audit, and authentication functions.
FMT_MSA.2 provides the administrator the ability to accept only secure values and
modify security attributes.
The requirement FMT_MTD.1(1), (2), and (3) that the administrator can manage TSF
data including audit pre-selection, identification and authentication data.
FMT_SMR.1(1) defines the specific security roles to be supported.
FMT_SMF.1(1), (2), and (3) support this objective in that it identifies the management
functions of cryptographic data, audit records, and cryptographic key data.
O.MEDIATE
FDP_PUD_(EXT).1 allows the administrator to control whether or not unencrypted data
will be allowed to pass through the TOE.
FIA_UAU.1, FIA_UAU_(EXT).5(1) and FIA_UID.2 ensure that the TOE has the ability
to mediate packet flow based on the authentication credentials of the wireless user.
O.PARTIAL_
FUNCTIONAL_ TESTING
ATE_FUN.1 requires the developer to provide the necessary test documentation to
allow for an independent analysis of the developer’s security functional test coverage. In
addition, the developer must provide the test suite executables and source code, which
the evaluator uses to independently verify the vendor test results and to support of the
test coverage analysis activities.
ATE_COV.2 requires the developer to provide a test coverage analysis that
demonstrates the extent to which the TSFI are tested by the developer’s test suite. This
component also requires an independent confirmation of the extent of the test suite,
which aids in ensuring that correct security relevant functionality of a TSFI is
demonstrated through the testing effort.
ATE_IND.2 requires an independent confirmation of the developer’s test results, by
mandating a subset of the test suite be run by an independent party. This component also
requires an independent party to craft additional functional tests that address functional
behavior that is not demonstrated in the developer’s test suite. Upon successful
completion of these requirements, the TOE’s conformance to the specified security
functional requirements will have been demonstrated.