Installation guide
Motorola WS5100 Wireless Switch and RFS7000 RF Switch Security Target
Page 57 of 85
augment the TOE functions
and facilities necessary to
support the administrators in
their management of the
security of the TOE, and
restrict these functions and
facilities from unauthorized
use.
O.TIME_STAMPS
The TOE shall obtain reliable
time stamps and the
capability for the
administrator to set the time
used for these time stamps.
OE.TIME_STAMPS
The TOE IT environment
shall provide reliable time
stamps and the capability for
the administrator to set the
time used for these time
stamps.
O.TOE_ACCESS
The TOE will provide
mechanisms that control a
user’s logical access to the
TOE.
OE.TOE_ACCESS
The environment will provide
mechanisms that support the
TOE in providing user’s
logical access to the TOE.
administrator.
OE.MANAGE ensures that the
administrator can manage
audit functionality in the TOE
IT environment.
O.TIME_STAMPS plays a role
in supporting this policy by
requiring the TOE to provide a
reliable time stamp (via an
external NTP server).
The audit mechanism is
required to include the current
date and time in each audit
record. All audit records that
include the user ID, will also
include the date and time that
the event occurred.
OE.TIME_STAMPS ensures
that the TOE IT environment
provides time services.
O.TOE_ACCESS and
OE.TOE_ACCESS support this
policy by controlling logical
access to the TOE and its
resources. This objective
ensures that users are
identified and authenticated so
that their actions may be
tracked by the administrator.
P.CRYPTOGRAPHIC
The TOE shall provide
cryptographic functions for its
own use, including
encryption/decryption operations.
O.CRYPTOGRAPHY
The TOE shall provide
cryptographic functions to
maintain the confidentiality
and allow for detection of
modification of user data that
is transmitted between
physically separated portions
of the TOE, or outside of the
TOE.
O.RESIDUAL_
INFORMATION
The TOE will ensure that any
information contained in a
protected resource within its
Scope of Control is not
released when the resource
O.CRYPTOGRAPHY satisfies
this policy by requiring the TOE
to implement NIST FIPS
validated cryptographic
services. These services will
provide confidentiality and
integrity protection of TSF data
while in transit to remote parts
of the TOE.
O.RESIDUAL_INFORMATION
satisfies this policy by ensuring
that cryptographic data are
cleared according to FIPS 140-
1/2.