Specifications

Cisco Aggregation Services Router (ASR) 901 Series Security Target
Page 27 of 50
FAU_GEN.1.2 The TSF shall record within each audit record at least the following information:
a) Date and time of the event, type of event, subject identity, and the outcome (success or
failure) of the event; and
b) For each audit event type, based on the auditable event definitions of the functional
components included in the PP/ST, [information specified in column three of Table 16].
Table 16 Auditable Events
SFR
Auditable Event
Additional Audit Record Contents
FAU_GEN.1
None.
None.
FAU_GEN.2
None.
None.
FAU_STG_EXT.1
None.
None.
FCS_CKM.1
None.
None.
FCS_CKM_EXT.4
None.
None.
FCS_COP.1(1)
None.
None.
FCS_COP.1(2)
None.
None.
FCS_COP.1(3)
None.
None.
FCS_COP.1(4)
None.
None.
FCS_IPSEC_EXT.1
Failure to establish an IPsec SA.
Establishment/Termination of an
IPsec SA.
Reason for failure.
Non-TOE endpoint of connection (IP
address) for both successes and
failures.
FCS_SSH_EXT.1
Failure to establish an SSH session
Establishment/Termination of an SSH
session.
Reason for failure.
Non-TOE endpoint of connection
(IP address) for both successes and
failures.
FCS_RBG_EXT.1
None.
None.
FDP_RIP.2
None.
None.
FIA_PMG_EXT.1
None.
None.
FIA_PSK_EXT
None.
None.
FIA_UIA_EXT.1
All use of the identification and
authentication mechanism.
Provided user identity, origin of the
attempt (e.g., IP address).
FIA_UAU_EXT.2
All use of the authentication
mechanism.
Origin of the attempt (e.g., IP
address).
FIA_UAU.7
None.
None.
FMT_MTD.1
None.
None.
FMT_SMF.1
None.
None.
FMT_SMR.2
None.
None.
FPT_SKP_EXT.1
None.
None.
FPT_APW_EXT.1
None.
None.