Installation guide

Motorola WS5100 Wireless Switch and RFS7000 RF Switch Security Target
Page 27 of 85
FIA_USB.1.2(1) The TSF shall enforce the following rules on the initial association of user security
attributes with subjects acting on the behalf of users: [upon successful identification and
authentication the username shall be that of the user that has authenticated successfully].
FIA_USB.1.3(1) The TSF shall enforce the following rules governing changes to the user security
attributes associated with subjects acting on the behalf of users: [no changes shall be allowed].
5.2.1.19 FIA_USB.1(2) User-subject binding.
FIA_USB.1.1(2) The TSF shall associate the following administrator user security attributes with
subjects acting on the behalf of that user: [username].
FIA_USB.1.2(2) The TSF shall enforce the following rules on the initial association of user security
attributes with subjects acting on the behalf of users: [upon successful identification and
authentication the username shall be that of the user that has authenticated successfully].
FIA_USB.1.3(2) The TSF shall enforce the following rules governing changes to the user security
attributes associated with subjects acting on the behalf of users: [no changes shall be allowed].
5.2.1.20 FMT_MOF.1(1) Management of cryptographic security functions behavior
FMT_MOF.1.1(1) The TSF shall restrict the ability to modify the behavior of the cryptographic
functions [
Crypto: load a key
Crypto: delete/zeroize a key
Crypto: set a key lifetime
Crypto: set the cryptographic algorithm
Crypto: set the TOE to encrypt or not to encrypt wireless transmissions
Crypto: execute self tests of TOE hardware and the cryptographic functions]
to [administrators].
5.2.1.21 FMT_MOF.1(2) Management of audit security functions behavior
FMT_MOF.1.1(2) The TSF shall restrict the ability to enable, disable, and modify the behavior of the
functions [
Audit: pre-selection of the events which trigger an audit record,
Audit: start and stop of the audit function]
to [administrators].