Security Requirements for the IT Environment
672
Netscape Certificate Management System Administrator’s Guide • February 2003
FMT_MOF.1.1
The IT environment shall restrict the ability to modify the behavior
of the functions listed in Table 4 to the authorized roles as specified in Table A-4.
FMT_MSA.1 Management of security attributes
FMT_MSA.1.1
The IT environment shall enforce the CIMC IT Environment
Access Control Policy specified in “CIMC TOE Access Control Policy,” on page 675
to restrict the ability to modify the security attributes [user definitions and role
assignments
] to Administrators.
FMT_MSA.2 Secure security attributes
FMT_MSA.2.1
The IT environment shall ensure that only secure values are
accepted for security attributes.
FMT_MSA.3 Static attribute initialization
FMT_MSA.3.1
The IT environment shall enforce the CIMC IT Environment
Access Control Policy specified in “CIMC TOE Access Control Policy,” on page 675
to provide [restrictive] default values for security attributes that are used to
enforce the SFP.
FMT_MSA.3.2
The IT environment shall allow the Administrator to specify
alternative initial values to override the default values when an object or
information is created.
FMT_MTD.1 Management of TSF data
Table A-4
Authorized Roles for Management of Security Functions Behavior
Section/Function
Function/Authorized Role
Security Audit
The capability to configure the audit parameters shall be restricted to
Administrators.
Identification and
Authentication
The capability to specify or change maximum authentication attempts shall be
restricted to Administrators.
The capability to change authentication mechanisms shall be restricted to
Administrators.
Account Administration
The capability to create user accounts and roles shall be restricted to
Administrators.
The capability to assign privileges to those accounts and roles shall be
restricted to Administrators.
Содержание Certificate Management System 6.1
Страница 1: ...Administrator s Guide Netscape Certificate Management System Version6 1 February 2003...
Страница 28: ...Documentation 28 Netscape Certificate Management System Administrator s Guide February 2003...
Страница 68: ...Support for Open Standards 68 Netscape Certificate Management System Administrator s Guide February 2003...
Страница 82: ...Uninstalling CMS 82 Netscape Certificate Management System Administrator s Guide February 2003...
Страница 166: ...How a Registration Manager Works 166 Netscape Certificate Management System Administrator s Guide February 2003...
Страница 382: ...ACL Reference 382 Netscape Certificate Management System Administrator s Guide February 2003...
Страница 566: ...Managing Policy Plug in Modules 566 Netscape Certificate Management System Administrator s Guide February 2003...
Страница 710: ...1 3 Organization Security Policies 710 Netscape Certificate Management System Administrator s Guide February 2003...
Страница 716: ...Object Identifiers 716 Netscape Certificate Management System Administrator s Guide February 2003...
Страница 762: ...DNs in Certificate Management System 762 Netscape Certificate Management System Administrator s Guide February 2003...
Страница 794: ...Managing Certificates 794 Managing Servers with Netscape Console December 2001...
Страница 810: ...The SSL Handshake 810 Managing Servers with Netscape Console December 2001...
Страница 828: ...828 Netscape Certificate Management System Administrator s Guide February 2003...