Installation guide

Motorola WS5100 Wireless Switch and RFS7000 RF Switch Security Target
Page 71 of 85
OE.AUDIT_PROTECTION
The IT Environment will
provide the capability to
protect audit information
and the authentication
credentials.
FAU_SAR.2
FAU_STG.1
FAU_STG.3
FMT_MOF.1(4)
FMT_SMR.1(2)
FAU_SAR.2 restricts the ability to read the
audit records to only the administrator. The
exception to this is that all administrators have
access to the audit record information
presented in the alarm indicating a potential
security violation.
FAU_STG.1restricts the ability to delete or
modify audit information to the administrators.
The TSF will prevent modifications of the audit
records in the audit trail.
FAU_STG.3 ensures that the administrator will
take actions when the audit trail exceeds pre-
defined limits.
FMT_MOF.1(4) and FMT_SMR.1(2) specify
the ability of the administrators to control the
security functions associated with audit and
alarm generation. The ability to control these
functions has been assigned to the
appropriate administrative roles.
OE.AUDIT_REVIEW
The IT Environment will
provide the capability to
selectively view audit
information.
FAU_GEN.1(2)
FAU_SAR.1
FAU_SAR.3
FAU_SAR.1 ensures that the IT environment
provides those responsible for the TOE with
facilities to review the TOE audit records (e.g.,
the administrator can construct a sequence of
events provided the necessary events were
audited).
FAU_SAR.3 provides the administrator with
the ability to selectively review the contents of
the audit trail based on established criteria.
This capability allows the administrator to
focus their audit review to what is pertinent at
that time.
FAU_GEN.1 ensures that the TOE IT
environment will generate appropriate audit
events to support the TOE.
OE.MANAGE
The TOE IT environment
will augment the TOE
functions and facilities
necessary to support the
administrators in their
management of the
security of the TOE, and
restrict these functions and
facilities from unauthorized
use.
FMT_MOF.1(4)
FMT_SMR.1(2)
FMT_MTD.1(3),(4),
(5)
FMT_SMF.1(4),(5)
FIA_USB.1 ensures that the TOE IT
environment includes a mechanism to
associate processes with roles. This ensures
that both the TOE and its IT environment can
identify
FMT_MOF.1(4) ensures that the TOE IT
environment limits access to TSF
management functions to the administrator.
FMT_SMR.1(2), FMT_MTD.1(3),(4), (5)
FMT_SMF.1(4),(5) ensure that the TOE IT
environment provides an administrative role
and management functions that may be used