Specifications

98
mechanism necessary to obtain and enforce an authentication
decision from the IT environment.
FPT_STM_(EXT).1
Reliable time
stamps
This explicitly generated requirement was done because this
requirement requires the TSF to be able to ‘obtain’ a reliable time
stamp while the CC requirement requires the TOE to supply the time
stamp so the two requirements do not require the same functionality.
FPT_TST_(EXT).1
TSF Testing
This explicit requirement is necessary because there are several issues
with the CC version of FPT_TST. 1. First, the wording of FPT_TST.
1.1 appears to make sense only if the TOE includes hardware; it is
difficult to imagine what software TSF “self-tests” would be run.
Secondly, some TOE data are dynamic (e.g., data in the audit trail,
passwords) and so interpretation of “integrity” for FPT_TST. 1.2 is
required, leading to potential inconsistencies amongst TOEs.
Therefore, the explicit requirement is used in this ST.
FTP_ITC_(EXT).1
Inter-TSF trusted
channel
This explicit requirement is necessary because the existing trusted
channel requirement is written with the intent of protecting
communication between distributed portions of the TOE rather than
between the TOE and its trusted IT environment.
IPS_SDC_(EXT).1
IPS Data
Collection
This explicit requirement is necessary to define the types of data the
AP will be able to collect for internal analysis or for forwarding to the
MSE for further analysis.
IPS_ANL_(EXT).1
IPS Analysis
This explicit requirement is necessary to define the types of traffic
that the AP will be able to analyze, and the type of data the AP will
be able to record with respect to wIPS analysis.
IPS_RCT_(EXT).1
IPS Reaction
This explicit requirement is necessary to define the types of reactions
that the AP will be able to take in response to detection of wIPS
events.
9 Obtaining Documentation, Support &
Security Guidelines
For information on obtaining documentation, obtaining support, providing documentation
feedback, security guidelines, and also recommended aliases and general Cisco documents,
see the monthly Whats New in Cisco Product Documentation, which also lists all new and
revised Cisco technical documentation, at:
http://www.cisco.com/en/US/docs/general/whatsnew/whatsnew.html