-
Notifications
You must be signed in to change notification settings - Fork 0
Open
Description
Recommend requiring KDF when TSF implementing passwords in FIA_UAU.5 Multiple Authentication Mechanisms.
Examples:
File Encryption
https://commoncriteria.github.io/fileencryption/master/fileencryption-release.html#FCS_CKM_EXT.6.3
Full Disk Encryption:
https://commoncriteria.github.io/FDEAA/master/FDEAA-release-linkable.html#FCS_PCC_EXT.1
If using FDE example, recommend removing this selection "[assignment: 1 or more] iterations and [assignment: 10000 or more] subsequent rounds of [AES] operations with a device key and PBKDF2 output per [FCS_COP.1/KeyEnc]]"
Reactions are currently unavailable
Metadata
Metadata
Assignees
Labels
No labels