Security Requirements for the IT Environment
Appendix
A
Common Criteria Environment: Security Requirements
701
FAU_GEN.1.1
The IT environment shall be able to generate an audit record of the
following auditable events:
1.
Start-up and shutdown of the audit functions;
2.
All auditable events for the minimum level of audit; and
3.
The events listed in Table 2 below.
FAU_GEN.1.2
The IT environment shall record within each audit record at least
the following information:
1.
Date and time of the event, type of event, subject identity, and the outcome
(success or failure) of the event; and
2.
For each audit event type, the information specified in the Additional Details
column in Table A-2 below.
Additionally, the audit shall not include plaintext private or secret keys or other
critical security parameters.
Table A-2
Auditable Events and Audit Data
Section/Function
Component
Event
Additional Details
Security Audit
FAU_GEN.1 Audit data
generation (iteration 1)
Any changes to the audit
parameters, e.g., audit
frequency, type of event
audited
Any attempt to delete the audit
log
Identification and
Authentication
FIA_ATD.1 User attribute
definition
Successful and unsuccessful
attempts to assume a role
FIA_AFL.1 Authentication
failure handling
The value of maximum
authentication attempts is
changed
FIA_AFL.1 Authentication
failure handling
Maximum authentication attempts
unsuccessful authentication
attempts occur during user
login
FIA_AFL.1 Authentication
failure handling
An Administrator unlocks an
account that has been locked as
a result of unsuccessful
authentication attempts
Содержание Certificate Management System 6.2
Страница 1: ...Administrator s Guide Netscape Certificate Management System Version6 2 June 2003...
Страница 22: ...22 Netscape Certificate Management System Administrator s Guide June 2003...
Страница 30: ...Documentation 30 Netscape Certificate Management System Administrator s Guide June 2003...
Страница 70: ...Support for Open Standards 70 Netscape Certificate Management System Administrator s Guide June 2003...
Страница 84: ...Uninstalling CMS 84 Netscape Certificate Management System Administrator s Guide June 2003...
Страница 164: ...How a Registration Manager Works 164 Netscape Certificate Management System Administrator s Guide June 2003...
Страница 322: ...Configuring the Server s Security Preferences 322 Netscape Certificate Management System Administrator s Guide June 2003...
Страница 380: ...ACL Reference 380 Netscape Certificate Management System Administrator s Guide June 2003...
Страница 564: ...Managing Policy Plug in Modules 564 Netscape Certificate Management System Administrator s Guide June 2003...
Страница 744: ...1 3 Organization Security Policies 744 Netscape Certificate Management System Administrator s Guide June 2003...
Страница 750: ...Object Identifiers 750 Netscape Certificate Management System Administrator s Guide June 2003...
Страница 796: ...DNs in Certificate Management System 796 Netscape Certificate Management System Administrator s Guide June 2003...
Страница 828: ...Managing Certificates 828 Netscape Certificate Manager System Administrator s Guide June 2003...
Страница 844: ...The SSL Handshake 844 Netscape Certificate Manager System Administrator s Guide June 2003...
Страница 862: ...862 Netscape Certificate Management System Administrator s Guide June 2003...