Cisco Cat4K NDPP ST
11 March 2014
EDCS-1228241
51
5.2.8 TOE Access (FTA)
5.2.8.1
FTA_SSL_EXT.1: TSF-initiated session locking
FTA_SSL_EXT.1.1 The TSF shall, for local interactive sessions, [
terminate the
session
] after a Security Administrator-specified time period of
inactivity.
5.2.8.2
FTA_SSL.3: TSF-initiated termination
FTA_SSL.3.1 The TSF shall terminate
a remote
interactive session after a
[
Security Administrator-configurable time interval of session
inactivity
].
5.2.8.3
FTA_TAB.1: Default TOE Access Banners
FTA_TAB.1.1 Before establishing a
user/administrator
session the TSF shall
display
a Security Administrator-specified
advisory
notice and
consent
warning message regarding unauthorized use of the TOE.
5.2.9 Trusted Path/Channel (FTP)
5.2.9.1
FTP_ITC.1(1): Inter-TSF trusted channel (prevention of disclosure)
FTP_ITC.1.1(1) The TSF shall
use
[IPSec]
to
provide a
trusted
communication
channel between itself and
authorized IT entities
that is logically
distinct from other communication channels and provides assured
identification of its end points and protection of the channel data
from disclosure.
FTP_ITC.1.2(1) The TSF shall permit
the TSF,
or the authorized IT entities
to
initiate communication via the trusted channel.
FTP_ITC.1.3(1) The TSF shall initiate communication via the trusted channel for
[
all authentication functions),
[
IPSec
]].
5.2.9.2
FTP_ITC.1(2) – Inter-TSF trusted channel (detection of modification)
FTP_ITC.1.1(2) The TSF shall
use
[IPSec]
in providing
a
trusted
communication channel between itself and
authorized IT entities
that is logically distinct from other communication channels and
provides assured identification of its end points and
detection of
the modification of data
.
FTP_ITC.1.2(2) The TSF shall permit
the TSF,
or the authorized IT entities
to
initiate communication via the trusted channel.