Installation guide

Motorola WS5100 Wireless Switch and RFS7000 RF Switch Security Target
Page 28 of 85
5.2.1.22 FMT_MOF.1(3) Management of authentication security functions behavior
FMT_MOF.1.1(3) The TSF shall restrict the ability to modify the behavior of the Authentication
functions [
Auth: allow or disallow the use of an authentication server
Auth: set the number of authentication failures that must occur before the TOE takes action to
disallow future logins
Auth: set the length of time a session may remain inactive before it is terminated]
to [administrators].
5.2.1.23 FMT_MSA.2 Secure security attributes
FMT_MSA.2.1 The TSF shall ensure that only secure values are accepted for security attributes.
5.2.1.24 FMT_MTD.1(1) Management of Audit pre-selection data
FMT_MTD.1.1(1) The TSF shall restrict the ability to query, modify, clear, [create] the [set of rules
used to pre-select audit events] to [the administrator].
5.2.1.25 FMT_MTD.1(2) Management of authentication data (administrator)
FMT_MTD.1.1(2) The TSF shall restrict the ability to query, modify, delete, clear, [create] the
[authentication credentials] to [administrators].
5.2.1.26 FMT_SMF.1(1) Specification of management functions (cryptographic function)
FMT_SMF.1.1(1) The TSF shall be capable of performing the following security management
functions: [configure administrator authentication, query and set the encryption/decryption of
network packets (via FCS_COP_EXP.2) in conformance with the administrators configuration of the
TOE].
Application Note: This requirement ensures that those responsible for TOE administration are able to select
an encryption algorithm identified in FCS_COP_EXP.2 or no encryption for encrypting/decrypting data
transmitted by the WLAN device.
5.2.1.27 FMT_SMF.1(2) Specification of management functions (TOE audit record generation)
FMT_SMF.1.1(2) The TSF shall be capable of performing the following security management
functions: [query, enable or disable Security Audit].
Application Note: This requirement ensures that those responsible for TOE administration are able to start or
stop the TOE generation of audit records