Skip to content

Commit 9f58b9e

Browse files
authored
Update gpcp.xml
Updates from the meeting on 8/7. Removed some highlighted texts and closed some issues. Also fixed a typo and reworded the SSH-based authentication.
1 parent c32d100 commit 9f58b9e

File tree

1 file changed

+8
-8
lines changed

1 file changed

+8
-8
lines changed

input/gpcp.xml

Lines changed: 8 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -988,9 +988,9 @@
988988
<consistency-rationale/>
989989
<f-element id="fau-stg-1e1">
990990
<title>The TSF shall be able to<selectables>
991-
<selectable><h:mark>store audit data on the TOE itself</h:mark></selectable>
992-
<selectable><h:mark>transmit audit data to an external IT entity using a trusted
993-
channel in accordance with FTP_ITC_EXT.1</h:mark></selectable>
991+
<selectable>store audit data on the TOE itself</selectable>
992+
<selectable>transmit audit data to an external IT entity using a trusted
993+
channel in accordance with FTP_ITC_EXT.1</selectable>
994994
<selectable id="sel-fau-stg-1e1-removable">write audit data to removable media
995995
under administratie control in accordance with FIA_UIA_EXT.</selectable></selectables>
996996
</title>
@@ -1000,7 +1000,7 @@
10001000
channel must be selected in FTP_ITC_EXT.1. <h:p/>
10011001
The ST Author selects "<h:i>removable media</h:i>" if the TOE supports offload of audit data using
10021002
removable media such as thumb drives or disks. Note that the CSfC Use Case prohibits the
1003-
use of removable media.<h:mark>(Issue 71)</h:mark>
1003+
use of removable media.
10041004
</note>
10051005
<aactivity level="element">
10061006
<TSS>
@@ -6607,7 +6607,7 @@
66076607
<note role="application">
66086608
<h:mark>The purpose of this requirement is to prevent hammering attacks from avoiding triggering the
66096609
actions in FIA_AFL_EXT.1.5 by rebooting the system in order to zero the authentication
6610-
failure count. This purpise is achieved by default if the minimum reboot time of the system
6610+
failure count. This purpose is achieved by default if the minimum reboot time of the system
66116611
is greater than the timeout penalty specified in FIA_AFL_EXT.1.5.<h:p/>
66126612
If the actions specified in FIA_AFL_EXT.1.5 are device wipe or a non-time-limited lockout, or if
66136613
the minimum reboot time is shorter than the specified lockout time, then
@@ -6887,7 +6887,7 @@
68876887
The TSF shall provide [<h:i>password and
68886888
<selectables>
68896889
<selectable id="sel-fia-uau-5-x509">X.509 certificate-based authentication</selectable>
6890-
<selectable id="sel-fia-uau-5-ssh">SSH-based authentication</selectable>
6890+
<selectable id="sel-fia-uau-5-ssh"><h:mark>SSH-based public key, password, or certificate authentication</h:mark></selectable>
68916891
<selectable>biometric authentication</selectable>
68926892
<selectable exclusive="yes">no other authentication mechanism</selectable>
68936893
</selectables></h:i>] to support user authentication.<h:mark>See Issue 67</h:mark>
@@ -7790,7 +7790,7 @@
77907790
</aactivity>
77917791
</f-element>
77927792
<audit-event type="optional">
7793-
<audit-event-descr>Detection of intrusion.<h:mark>Made this optional (Issue 51)</h:mark></audit-event-descr>
7793+
<audit-event-descr>Detection of intrusion.</audit-event-descr>
77947794
<audit-event-info>None.</audit-event-info>
77957795
</audit-event>
77967796
</f-component>
@@ -7854,7 +7854,7 @@
78547854
</aactivity>
78557855
</f-element>
78567856
<audit-event type="optional">
7857-
<audit-event-descr>Detection of intrusion.<h:mark>Made this optional (Issue 51)</h:mark></audit-event-descr>
7857+
<audit-event-descr>Detection of intrusion.</audit-event-descr>
78587858
<audit-event-info>None.</audit-event-info>
78597859
</audit-event>
78607860
</f-component>

0 commit comments

Comments
 (0)