Re: FMT_MSA.3: Restrictive/Permissive Default Values




On Friday, May 14,  Dr.Ir. D.J. Out wrote:

> This is on the CCIMB fix-list. The current solution leans to:
>
> MSA.3.1 The TSF shall ensure that [assignment: security attribute] has a
> default value of [assignment: value] when the object, subject or
> information that it belongs to is created.
> MSA.3.2 The TSF shall allow [assignment: subject] to change this default
> value.

When a message with a classification label (A, B or C) received,  could
those values (A, B or C) be treated as default attribute values for the each
information that is created in the TOE?
Or, should we understand that the subject in the TOE changes some predefined
default values by the incoming values (A, B and C) ?

Simply saying, could the values (A, B and C) be "default attribute values"
that are placed by the TSF?, or "alternate initial values" that are placed
by the subject?

I'm confused. Please help.

Yokota






Date Index | Thread Index | Problems or questions? Contact list-master@nist.gov