Installation guide
Motorola WS5100 Wireless Switch and RFS7000 RF Switch Security Target
Page 80 of 85
The table below demonstrates suitability of Security Functions to meet TSFRs.
Table 8-6 Suitability of Security Functions to meet TSFRs
Security Functions SFRs Rationale
Security Audit FAU_GEN.1(1)
FAU_GEN.2
FAU_SEL.1
The Security Audit function
enables TOE to generate audit
events (FAU_GEN.1(1)) that
contain the username for an
identified user (FAU_GEN.2),
and allows inclusion/exclusion
of events (FAU_SEL.1).
Cryptographic Support FCS_BCM_EXP.1
FCS_CKM.1
FCS_CKM_EXP.2
FCS_CKM.4
FCS_COP_EXP.1
FCS_COP_EXP.2(1)
FCS_COP_EXP.2(2)
The Cryptographic Support
function ensures that the TOE
cryptographic module complies
with FIPS 140-2 at Level 2
(FCS_BCM_EXP.1). The
module generates
cryptographic keys and random
numbers (FCS_CKM.1 and
FCS_COP_EXP.1), supports
cryptographic key
establishment
(FCS_CKM_EXP.2), allows
cryptographic key destruction
(FCS_CKM.4), and performs
cryptographic operations
(FCS_COP_EXP.1,
FCS_COP_EXP.2(1), and
FCS_COP_EXP.2(2)).
User Data Protection FDP_PUD_EXP.1
FDP_RIP.1(1)
The User Data Protection
function ensures protection of
the TOE wireless user data
(FDP_PUD_EXP.1) and
network packet residual
information (FDP_RIP.1(1)).
Identification and
Authentication
FIA_AFL.1(1)
FIA_ATD.1(1)
FIA_UAU.1
FIA_UAU_EXP.5(1)
FIA_UID.2
FIA_USB.1(1)
FIA_USB.1(2)
The Identification and
Authentication function ensures
that the TOE prevents remote
administrator login when a
configurable number of
unsuccessful remote
administrator authentication
attempts occur (FIA_AFL.1(1)),
and maintains administrator
passwords (FIA_ATD.1(1)).
The TOE enforces user