RE: Clarification/Correction on CC v3.1 ADV_TDS.3
- Subject: RE: Clarification/Correction on CC v3.1 ADV_TDS.3
- From: "Michelle Ruppel" <maruppel@saffiresys.com>
- Date: Mon, 21 Jan 2008 13:59:28 -0600
- Content-Transfer-Encoding: 7bit
- Content-Type: text/plain; charset="us-ascii"
- References: <44C87EF1.19289.7D85AA@localhost>
- Thread-Index: Acaxlc8iK1TODUqbSEqbz7QgvSTpHWqwuDDgAAOcHwA=
Also note that the answer to Questions below probably also effects
ADV_TDS.4.
-----Original Message-----
From: Michelle Ruppel [mailto:maruppel@saffiresys.com]
Sent: Monday, January 21, 2008 1:08 PM
To: 'cc-cmt@nist.gov'
Subject: Clarification/Correction on CC v3.1 ADV_TDS.3
Hi,
I have a few questions on ADV_TDS.3.
ADV_TDS.3.8C "The design shall describe each SFR-enforcing module in terms
of ... and called interfaces to other modules."
1. Question: Do all called interfaces to other modules need to be
identified or only the SFR-related interfaces to other SFR-enforcring
modules?
Interfaces to SFR-supporting and SFR-non-interfering modules are not
identified or described as part of the module description in ADV_TDS.3.
Non-SFR-related interfaces to SFR-enforcing modules are not identified
either.
It seems inconsistent to identify called interfaces to other modules that
are not even identified in the description of those other modules.
Based on what I have read, I think the following interpretation of this
portion of the requirement makes sense:
The design shall describe for each SFR-enforcing module the called
SFR-related interfaces to the other modules and the interactions with other
non-SFR-enforcing modules.
Can someone please clarify what is required?
2. While reading the CEM to find the answer to Question 1, I noticed that
there are no CEM work units that require the evaluator to examine the design
to determine that the description of the SFR-enforcing modules includes the
called interfaces to other modules.
Have I missed it or is a work unit missing?
3. In CEM ADV_TDS.3-10, .3-11, and .3-12, should "non-SFR-supporting" be
"non-SFR-enforcing"?
Support:
CC v3.1 Part 3: ADV_TDS.3.9C "The design shall describe each SFR-supporting
or SFR-non-interfering module in terms ..."
CEM v3.1: ADV_TDS.3-10 "The evaluator shall examine the TOE design to
determine that non-SFR-supporting modules are correctly categorised."
SFR-supporting or SFR-non-interfering modules are non-SFR-enforcing modules,
not non-SFR-supporting modules.
The supportive text in paragraph 818 just below ADV_TDS.3-10 mentions
non-SFR-enforcing, not non-SFR-supporting.
Similarly with ADV_TDS.3-11 and ADV_TDS.3-12.
Thanks,
- Michelle
Michelle Ruppel
Saffire Systems
maruppel@saffiresys.com
- References:
- Update on CCv3
- From: "Observation Decisions Review Board" <faigin@aero.org>
Date Index |
Thread Index |
Problems or questions? Contact list-master@nist.gov