McAfee EPOLICY ORCHESTRATOR 4.5 - Supplement Manual Download Page 5

 

 

Operational User Guidance and Preparative Procedures Supplement for Common Criteria  

5 

1

 

Introduction 

This guide provides operational guidance and installation procedures for the VirusScan Enterprise 8.8 

and ePolicy Orchestrator 4.5. 

This guide was written to provide the evidence required by the following assurance requirements of 

the Common Criteria (CC) Version 3.1, Part 3: 

 

AGD_OPE.1 

 

AGD_PRE.1 

These assurance requirements call for documentation of installation procedures that provide assurance 

that the TOE is installed and configured in the evaluated configuration.  

This document serves as a supplement to the standard McAfee documentation set including the 

following: 

 

McAfee VirusScan Enterprise 8.8 Product Guide 

 

McAfee VirusScan Enterprise 8.8 Installation Guide 

 

McAfee ePolicy Orchestrator 4.5 Installation Guide 

 

McAfee ePolicy Orchestrator 4.5 Product Guide 

These documents should be read prior to configuring the product in accordance with the Common 

Criteria evaluated configuration. The documents listed above in conjunction with this supplement 

describe how to administer the TOE in a manner that meets the Common Criteria evaluated 

configuration. Any changes to or deviations from the information provided in this document will result 

in noncompliance between the product and the Common Criteria evaluated configuration. 

The audience for this document includes administrators who are authorized to install and configure 

TOE. Since administrators configure the TOE and set policies for use, there is no specific user guidance 

documentation. 

Contents 

 

About the Common Criteria 

 

Assumptions 

 

Acronyms 

About the Common Criteria 

The Common Criteria for Information Technology Security Evaluation (or “Common Criteria”) provides 

a methodology for evaluating security features of IT products. Product vendors pursue Common 

Criteria evaluation to meet assurance needs of customers and to seek third-party validation of security 

function claims. The Target of Evaluation (TOE) encompasses the evaluated security functionality of a 

product.  

Summary of Contents for EPOLICY ORCHESTRATOR 4.5 -

Page 1: ...Supplement for Common Criteria Operational User Guidance and Preparative Procedures McAfee VirusScan Enterprise 8 8 McAfee ePolicy Orchestrator 4 5 Software...

Page 2: ...tered trademarks herein are the sole property of their respective owners LICENSE INFORMATION License Agreement NOTICE TO ALL USERS CAREFULLY READ THE APPROPRIATE LEGAL AGREEMENT CORRESPONDING TO THE L...

Page 3: ...rocedures 7 Overview 7 Downloading the TOE 7 Evaluated Configuration 8 Functionality Not Included in the Evaluation 9 Verify Software 9 Updating System Software 10 Install Database Capacity Monitor Ex...

Page 4: ...4 Operational User Guidance and Preparative Procedures Supplement for Common Criteria...

Page 5: ...ng the product in accordance with the Common Criteria evaluated configuration The documents listed above in conjunction with this supplement describe how to administer the TOE in a manner that meets t...

Page 6: ...non hostile are authenticated to the internal network and follow all administrator guidance Human users considered to be anyone who interacts with the TOE who are not authorized administrators cannot...

Page 7: ...guration Verify Software Install Database Capacity Monitor Extension Overview Prior to installation the administrator should read and be familiar with the details of all documentation for McAfee Virus...

Page 8: ...appears 4 Click I Agree the ePolicy Orchestrator download page appears containing a list of links 5 Click and download the ePolicy Orchestrator file ePO450P3 Zip 6 Click the Documentation tab 7 Selec...

Page 9: ...inistrator For this TOE the Central Administrator role is defined as an authorized administrator with Global Administrator status 6 Because the U S Government Protection Profile Anti Virus Application...

Page 10: ...te license grant for the evaluated software version Install Database Capacity Monitor Extension The purpose of the feature is to enable the use of automatic responses to alert the administrator of the...

Page 11: ...ng an Automatic Response Step 1 Adjust or Review Database space requirements The user can create a query for systems with less than for example 10GB free of system drive space The user can create a se...

Page 12: ...This server task creates entries in the EPOServerEvents table using the event id of 16081 and contains information pertaining to the audit log entry and server information The presence of the event id...

Page 13: ...13 2 Add the Event ID as a filter and specify 16081 as the value On the Aggregation tab of the Automatic Response builder screen it should be noted that throttling should be used in order to not overl...

Page 14: ...nes and Preparative Procedures Install Database Capacity Monitor Extension 14 Operational User Guidance and Preparative Procedures Supplement for Common Criteria 3 Review settings and save the automat...

Page 15: ...on Inspection The administrator should periodically verify that the evaluated version of software is running Required Password Length When adding other administrator accounts to the TOE the administra...

Reviews: