Skip to content

Commit 37b001c

Browse files
committed
pkg-ref fixes
1 parent 89e84f4 commit 37b001c

File tree

1 file changed

+17
-15
lines changed

1 file changed

+17
-15
lines changed

input/gpcp.xml

Lines changed: 17 additions & 15 deletions
Original file line numberDiff line numberDiff line change
@@ -990,8 +990,9 @@
990990
for Objective requirements</selectable>
991991
<selectable>Specifically defined auditable event in <xref g="t-audit-sel-based"/>
992992
for Selection-based requirements</selectable>
993-
<selectable>Additional information defined in the audit table for the <xref to="pkg-tls"/></selectable>
994-
<selectable>Additional information defined in the audit table for the <xref to="pkg-ssh"/></selectable>
993+
<selectable>Additional information defined in the audit table for the <xref to="tls"/></selectable>
994+
<selectable>Additional information defined in the audit table for the <xref to="ssh"/></selectable>
995+
<selectable>Additional information defined in the audit table for the <xref to="X509"/></selectable>
995996
<selectable exclusive="yes">no additional auditable events</selectable>
996997
</selectables>.</h:li>
997998
</h:ol>
@@ -1009,8 +1010,9 @@
10091010
<selectable>Additional information defined in <xref g="t-audit-optional"/> for Strictly Optional SFRs</selectable>
10101011
<selectable>Additional information defined in <xref g="t-audit-objective"/> for Objective SFRs</selectable>
10111012
<selectable>Additional information defined in <xref g="t-audit-sel-based"/> for Selection-Based SFRs</selectable>
1012-
<selectable>Additional information defined in the audit table for the <xref to="pkg-tls"/></selectable>
1013-
<selectable>Additional information defined in the audit table for the <xref to="pkg-ssh"/></selectable>
1013+
<selectable>Additional information defined in the audit table for the <xref to="tls"/></selectable>
1014+
<selectable>Additional information defined in the audit table for the <xref to="ssh"/></selectable>
1015+
<selectable>Additional information defined in the audit table for the <xref to="X509"/></selectable>
10141016
<selectable exclusive="yes">no other information</selectable>
10151017
</selectables>.</refinement></h:li>
10161018
</h:ol>
@@ -5384,7 +5386,7 @@
53845386
<note role="application">
53855387
This SFR is included in the ST if the ST Author selects "<h:i>TLS/HTTPS</h:i>" in
53865388
FTP_ITC_EXT.1.1.<h:p/>
5387-
If this SFR is included in the ST, then the <xref to="pkg-tls"/>
5389+
If this SFR is included in the ST, then the <xref to="tls"/>
53885390
must also be claimed.
53895391
</note>
53905392
</f-element>
@@ -5890,7 +5892,7 @@
58905892
the ST Author to reflect what is implemented. The ST Author also ensures that
58915893
appropriate FCS requirements reflecting the algorithms used (and key
58925894
generation capabilities, if provided) are listed to support those methods.
5893-
Applicable claims from the <xref to="pkg-x509"/> are made to support X.509
5895+
Applicable claims from the <xref to="X509"/> are made to support X.509
58945896
validation functionality, most notably FIA_XCU_EXT.1 (mandatory requirement
58955897
defining the TOE's use of certificates), FIA_X509_EXT.1 (X.509 certificate validation)
58965898
and FIA_X509_EXT.2 (X.509 certificate authentication).<h:p/>
@@ -5927,7 +5929,7 @@
59275929
</Guidance>
59285930
<Tests>
59295931
For efficiency’s sake, the testing that is performed here has been combined with the testing for
5930-
X.509 certificate validation defined by <xref to="pkg-x509"/>,
5932+
X.509 certificate validation defined by <xref to="X509"/>,
59315933
FCS_IPSEC_EXT.1.12, and FCS_IPSEC_EXT.1.13. The following tests shall be repeated for each peer
59325934
authentication protocol selected in the FCS_IPSEC_EXT.1.11 selection above:<h:p/>
59335935
<testlist>
@@ -7296,9 +7298,9 @@
72967298
authentication factor.<h:p/>
72977299
The Password Authentication Factor is configured according to FIA_PMG_EXT.1.<h:p/>
72987300
If "<h:i>X.509 certificate-based authentication</h:i>" is selected, then the ST must include
7299-
FIA_X509_EXT.1 and FIA_X509_EXT.2 from <xref to="pkg-x509"/>.<h:p/>
7301+
FIA_X509_EXT.1 and FIA_X509_EXT.2 from <xref to="X509"/>.<h:p/>
73007302
If "<h:i>public key-based authentication</h:i>" is selected, then the ST must claim
7301-
the <xref to="pkg-ssh"/>.
7303+
the <xref to="ssh"/>.
73027304
</note>
73037305
</f-element>
73047306
<f-element id="fia-uau-5e2">
@@ -7865,7 +7867,7 @@
78657867
<O ref="A"/>
78667868
<X ref="U"/>
78677869
<app-note>
7868-
This function must be claimed if FIA_X509_EXT.1 is claimed in the ST (i.e., the TOE claims conformance to <xref to="pkg-x509"/>. <h:p/>
7870+
This function must be claimed if FIA_X509_EXT.1 is claimed in the ST (i.e., the TOE claims conformance to <xref to="X509"/>. <h:p/>
78697871
If TOE does not support configuration of certificate revocation checking methods,
78707872
then the Administrator option should be denied.
78717873
</app-note>
@@ -7882,7 +7884,7 @@
78827884
<X ref="U"/>
78837885
<app-note>
78847886
This function must be claimed if FIA_X509_EXT.2 is claimed in the ST (i.e., the TOE claims conformance
7885-
to <xref to="pkg-x509"/> and the claims made in the SFR indicate that the administrator is allowed to
7887+
to <xref to="X509"/> and the claims made in the SFR indicate that the administrator is allowed to
78867888
configure how the TSF treats a certificate with undetermined revocation status.
78877889
</app-note>
78887890
</management-function>
@@ -9357,11 +9359,11 @@
93579359
<f-element id="ftp-itc-ext-1e1">
93589360
<title>The TSF shall use
93599361
<selectables linebreak="yes">
9360-
<selectable id="sel-itc-tls">TLS as conforming to the <xref to="pkg-tls"/></selectable>
9362+
<selectable id="sel-itc-tls">TLS as conforming to the <xref to="tls"/></selectable>
93619363
<selectable id="sel-itc-https">TLS/HTTPS as conforming to FCS_HTTPS_EXT.1</selectable>
93629364
<selectable id="sel-itc-ipsec">IPsec as conforming to FCS_IPSEC_EXT.1</selectable>
93639365
<selectable id="sel-itc-ssh">SSH as conforming to the
9364-
<xref to="pkg-ssh"/></selectable>
9366+
<xref to="ssh"/></selectable>
93659367
</selectables>
93669368
protocols with
93679369
<selectables linebreak="yes" onlyone="yes">
@@ -9398,8 +9400,8 @@
93989400
Functional Package for TLS. This PP does not mandate that a product implement TLS with mutual authentication,
93999401
but if the product includes the capability to perform TLS with mutual authentication, then
94009402
mutual authentication must be included within the TOE boundary.<h:p/>
9401-
If the ST Author selects "<h:i>SSH</h:i>," the TOE must conform to <xref to="pkg-ssh"/>.<h:p/>
9402-
If the ST Author selects "<h:i>certificate-based authentication of the remote peer</h:i>," then the TOE must conform to <xref to="pkg-x509"/>.<h:p/>
9403+
If the ST Author selects "<h:i>SSH</h:i>," the TOE must conform to <xref to="ssh"/>.<h:p/>
9404+
If the ST Author selects "<h:i>certificate-based authentication of the remote peer</h:i>," then the TOE must conform to <xref to="X509"/>.<h:p/>
94039405
Claims from this package are only required to the extent that they are needed to support the functionality required by the trusted protocols that are claimed.
94049406
<h:p/>
94059407
If the TSF implements a protocol that requires the validation of a certificate presented by an

0 commit comments

Comments
 (0)