Cisco Cat4K NDPP ST
11 March 2014
EDCS-1228241
50
5.2.6.4
FPT_PTD_EXT.1(2): Management of TSF data (for reading of all
symmetric keys)
FPT_PTD_EXT.1.1(2) The TSF shall
prevent
reading of all pre-shared keys,
symmetric key, and private keys
.
5.2.6.5
FPT_RPL.1: Replay detection
FPT_RPL.1.1 The TSF shall detect replay for the following entities: [
network
packets terminated at the TOE
].
FPT_RPL.1.2 The TSF shall perform: [
reject the data
]
when replay is detected.
5.2.6.6
FPT_STM.1: Reliable time stamps
FPT_STM.1.1 The TSF shall be able to provide reliable time stamps for its own
use.
5.2.6.7
FPT_TUD_EXT.1: Trusted update
FPT_TUD_EXT.1.1 The TSF shall provide security administrators the ability to
query the current version of the TOE firmware/software.
FPT_TUD_EXT.1.2 The TSF shall provide security administrators the ability to
initiate updates to the TOE firmware/software.
FPT_TUD_EXT.1.3 The TSF shall provide a means to verify firmware/software
updates to the TOE using a [
published hash
] prior to
installing those updates.
5.2.6.8
FPT_TST_EXT.1: TSF testing
FPT_TST_EXT.1.1 The TSF shall run a suite of self tests during initial start-up
(on power on) to demonstrate the correct operation of the
TSF.
5.2.7 FRU
– Resource Utilization
5.2.7.1
FRU_RSA.1: Maximum quotas
FRU_RSA.1.1(1)
The TSF shall enforce maximum quotas of the following
resources: [
resources supporting the administrative
interface
]
,
[
no other resource
] that
[
individual user
]
can use
[
simultaneously
].