Skip to content

Commit 09f2717

Browse files
committed
formatting consistency
1 parent 33e24c8 commit 09f2717

File tree

1 file changed

+2
-4
lines changed

1 file changed

+2
-4
lines changed

input/stip.xml

Lines changed: 2 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -1157,8 +1157,8 @@ expected to enforce.<h:p/>
11571157
<consistency-rationale>The PP-Module partially completes selections and assignments in this SFR using the available options to specify external interfaces and trusted channels that all STIP products must support at minimum.</consistency-rationale>
11581158
<description>
11591159
<h:p>This SFR has been modified from its definition in the Base-PP to mandate the use of TLS. Other protocol options may be selected without restriction. Any element that is not present in this section is unchanged from its definition in the Base-PP.</h:p>
1160-
<h:p>The text of the specified elements is replaced with:</h:p>
1161-
<h:p><h:b>FTP_ITC.1.1: </h:b>The TSF shall be capable of using <h:b>TLS as defined in
1160+
<h:p>The text of FTP_ITC.1.1 is replaced with:</h:p>
1161+
<h:p><h:b>FTP_ITC.1.1 </h:b>The TSF shall be capable of using <h:b>TLS as defined in
11621162
the Functional Package for TLS and</h:b> [<h:b>selection: </h:b><h:i>IPsec, SSH as defined in the Functional Package for SSH, DTLS as defined in the Functional Package for TLS, HTTPS, <h:b>no other protocols</h:b></h:i>]
11631163
to provide a trusted communication channel between itself and authorized IT entities supporting the following capabilities: audit server, <h:b>TLS session proxying, </h:b>[<h:b>selection: </h:b><h:i>authentication server, <h:b>Enrollment over Secure Transport, </h:b>[<h:b>assignment: </h:b>other capabilities], no other capabilities</h:i>]
11641164
that is logically distinct from other communication channels and provides assured
@@ -1169,8 +1169,6 @@ expected to enforce.<h:p/>
11691169
this interface is defined in the PP-Module as selection-based functionality.
11701170
The TLS functionality used to implement SSL/TLS session proxying is defined in this PP-Module under the FCS_TTTC_EXT and FCS_TTTS_EXT requirements.
11711171
For other potential TLS uses (e.g. EST, audit server communications), the relevant SFRs from the Base-PP would be used.</h:p>
1172-
<h:p><h:b>FTP_ITC.1.2: </h:b>The TSF shall permit [<h:b>selection: </h:b><h:i>the TSF, <h:b>the authorized IT entities</h:b></h:i>] to initiate communication via the trusted channel.</h:p>
1173-
<h:p><h:b>FTP_ITC.1.3: </h:b>The TSF shall initiate communication via the trusted channel for [<h:i>establishment of TLS proxy connections, [<h:b>selection: </h:b>[<h:b>assignment: </h:b>list of other services for which the TSF is able to initiate communications], no other services</h:i>].</h:p>
11741172
</description>
11751173
<no-change/>
11761174
</base-sfr-spec>

0 commit comments

Comments
 (0)