NIAP: View Technical Decision Details
NIAP/CCEVS
  NIAP  »»  Protection Profiles  »»  Technical Decisions  »»  View Details  
TD0829:  Aligning MOD_WIDS 1.0 with NDcPP 3.0E

Publication Date
2024.04.25

Protection Profiles
MOD_WIDS_V1.0

Other References
Section 1.1, MOD_WIDS_V1.0-SD, FAU_STG_EXT.1.3, FAU_STG_EXT.1.4, FAU_STG_EXT.1.5, FAU_STG_EXT.1.6

Issue Description

Several SFRs were added in the CPP_ND_V3.0E that must be updated in MOD_WIDS_V1.0 to maintain compatibility.

Resolution

The following is added to the bulleted list of Base-PPs in Section 1.1 Overview of MOD_WIDS_V1.0 is modified as follows, with green highlighted underlines denoting addition:

 

  • collaborative Protection Profile for Network Devices (NDcPP), Version 3.0e

 

 

The following is added to the bulleted list of Base-PPs in Section 1.1 Technology Area and Scope of Supporting Document of MOD_WIDS_V1.0-SD is modified as follows, with green highlighted underlines denoting addition:

 

The Application Note for FAU_STG_EXT.1 in Section 5.1.1.1 of MOD_WIDS_V1.0 is modified as follows, with green highlighted underlines denoting additions:

Application Note: This SFR is modified from its definition in the Base-PP by removing the selection option for the TOE to be standalone. When CPP_ND_V3.0E is the Base-PP, the element in Section 5.1.2.2 should be used, instead. A TOE that conforms to this PP-Module is expected to be distributed.

 

 

Section 5.1.2 Further Modified SFRs and its associated subsections are added to MOD_WIDS_V1.0 as follows:

5.1.2 Further Modified SFRs

The SFRs listed in this section are defined in the NDcPP V3.0E and relevant to the secure operation of the TOE. SFRs in this section must be used in lieu of their counterparts in Section 5.1.1 when CPP_ND_V3.0E is used as the Base PP. When not further refined in this section, SFRs listed in section 5.1.1 should be used as-is.

5.1.2.1 Security Audit (FAU)

FAU_STG_EXT.1 Protected Audit Event Storage

FAU_STG_EXT.1.3

The TSF shall maintain a [selection: log file, database, buffer, [assignment: other local logging method]] of audit records in the event that an interruption of communication with the remote audit server occurs.

FAU_STG_EXT.1.4

The TSF shall be able to store [selection: persistent, nonpersistent] audit records locally with a minimum storage size of [assignment: number of records and/or file/buffer size(s)].

FAU_STG_EXT.1.5

The TSF shall [selection: drop new audit data, overwrite previous audit records according to the following rule: [assignment: rule for overwriting previous audit records], [assignment: other action]] when the local storage space for audit data is full.

FAU_STG_EXT.1.6

The TSF shall provide the following mechanisms for administrative access to locally stored audit records [selection: none, manual export, ability to view locally].

Justification

See Issue Description.

 
 
Site Map              Contact Us              Home