Installation guide

Motorola WS5100 Wireless Switch and RFS7000 RF Switch Security Target
Page 35 of 85
5.3.1.6 FAU_STG.3 Action in case of possible audit data loss
FAU_STG.3.1 The TOE IT environment TSF shall [immediately alert the administrators by
displaying a message at the local console, none] if the audit trail exceeds [an administrator-settable
percentage of storage capacity].
5.3.1.7 FDP_RIP.1(2) Subset residual information protection
FDP_RIP.1.1(2) The TOE IT Environment TSF shall ensure that any previous information content
of a resource is made unavailable upon the allocation of the resource to the following objects:
[network packet objects]
Application Note: This requirement ensures that the TOE environment does not allow data from a previously
transmitted packet to be inserted into unused areas or padding in the current packet. Since operations on
requirement for the IT environment must be completed, the selection “allocation of resources to” has been
made because it is encompassing of the two options (e.g. a system that make the information contents of
resource unavailable when the resource is freed can also claim to meet the requirement that the content of the
resource be freed prior to reallocation).
5.3.1.8 FIA_AFL.1(2) Remote user authentication failure handling
FIA_AFL.1.1(2) The TOE IT Environment TSF shall detect when an administrator configurable
positive integer within [1 to 1024] of unsuccessful authentication attempts occur related to [remote
users logging on to the WLAN access system].
FIA_AFL.1.2(2) When the defined number of unsuccessful authentication attempts has been met or
surpassed, the TSF shall [prevent the remote user from authenticating until action is taken by an
administrator].
Application Note: This requirement ensures that the TOE IT Environment has the capability to detect multiple
authentication attempts and take action to disable subsequent authentication attempts.
5.3.1.9 FIA_ATD.1(2) User attribute definition
FIA_ATD.1.1(2) The TOE IT Environment TSF shall maintain the following minimum list of
security attributes belonging to individual remotely authenticated users: [password for users
authenticating using EAP-TTLS and PEAP authentication protocols].
5.3.1.10 FIA_UAU_EXP.5(2) Remote authentication mechanisms
FIA_UAU_EXP.5.1(2) The TOE IT Environment TSF shall provide [a remote authentication
mechanism] to provide TOE remote user authentication.
FIA_UAU_EXP.5.2(2) The TOE IT Environment TSF shall authenticate any user’s claimed identity
according to the [EAP-TLS, EAP-TTLS, or PEAP authentication protocols].