Belkin®
Secure
DVI
KVM
Switch,
Secure
KM
Switch
and
Secure
Windowing
KVM
EAL
4
augmented
ALC_FLR.3
Security
Target
Rev.
1.01
Page
|
44
Table
10:
TOE
Security
Functional
Requirements
summary
6.1.1
Class
FDP:
User
Data
Protection
6.1.1.1
FDP_ETC.1
Export
of
user
data
without
security
attributes
Hierarchical
to:
No
other
components.
Dependencies:
FDP_ACC.1
Subset
access
control,
or
FDP_IFC.1a
subset
information
flow
control
FDP_ETC.1.1
The
TSF
shall
enforce
the
Data
Separation
SFP
when
exporting
user
data,
controlled
under
the
SFP(s),
outside
of
the
TOE.
FDP_ETC.1.2
The
TSF
shall
export
the
user
data
without
the
user
data’s
associated
security
attributes.
6.1.1.2
FDP_IFC.1a
Subset
Information
Flow
Control
(Data
Separation)
Hierarchical
to:
No
other
components.
Dependencies:
FDP_IFF.1a
Simple
security
attributes
FDP_IFC.1.1a
The
TSF
shall
enforce
the
Data
Separation
SFP
on
the
set
of
PERIPHERAL
PORT
GROUPS,
and
the
bi
‐
directional
flow
of
PERIPHERAL
DATA
between
the
SHARED
PERIPHERALS
and
the
SWITCHED
COMPUTERS
.
Application
Note:
The
data
flow
is
uni
‐
directional
in
the
TOE.
i.e.
the
TOE
implementation
is
more
conservative
than
claimed
Protection
Profile.
6.1.1.3
FDP_IFC.1b
Subset
information
flow
control
(Unidirectional
data
flow)
Hierarchical
to:
No
other
components.
Dependencies:
FDP_IFF.1a
Simple
security
attributes
FDP_IFC.1.1b
The
TSF
shall
enforce
the
Unidirectional
Forced
Data
Flow
SFP
on
the
POINTING
DEVICE
and
on
the
KEYBOARD
PERIPHERAL
DATA
to
restrict
data
flow
from
SHARED
PERIPHERALS
to
SWITCHED
COMPUTERS
only.
6.1.1.4
FDP_IFF.1a
Simple
Security
Attributes
(Data
Separation)
Hierarchical
to:
No
other
components.