Cisco Cat4K NDPP ST 11 March 2014
EDCS-1228241
37
TOE Security Objective
Definition
The TOE shall provide
mechanisms that mitigate user
attempts to exhaust TOE resources
(e.g., persistent storage).
The TOE shall provide
mechanisms that mitigate the risk
of unattended sessions being
hijacked.
The TOE will provide the
capability to test some subset of its
security functionality to ensure it
is operating properly.
4.2 Security Objectives for the Environment
The security objectives for the environment consist of a set of objectives the environment
should achieve to assist the TOE in correctly providing its security objectives.
Table 14 Security Objectives for the Environment
Operational Environment
Security Objective
Operational Environment Security
Objective Definition
There are no general-purpose computing
capabilities (e.g., compilers or user applications)
available on the TOE, other than those services
necessary for the operation, administration and
support of the TOE.
Physical security, commensurate with the value of
the TOE and the data it contains, is provided by the
environment.
TOE Administrators are trusted to follow and apply
all administrator guidance in a trusted manner.
5 SECURITY REQUIREMENTS
This section identifies the Security Functional Requirements for the TOE. The Security
Functional Requirements included in this section are derived from US Government,
Security Requirements for Network Devices (pp_nd_v1.0), version 1.0, dated 10
December 2010.