
McAfee Email Gateway
Security Target
Page 40 of 61
Component levelling
FTA_SSL_EXT.1 requires the ability to either lock or terminate a local interactive session.
Management: FTA_SSL_EXT.1
The following actions could be considered for the management functions in FMT:
a) Specification of the time of user inactivity after which lock-out or termination occurs for an
individual user;
b) Specification of the default time of user inactivity after which lock-out or termination occurs;
c) Management of the events that should occur prior to unlocking the session.
Audit: FTA_SSL_EXT.1
The following actions should be auditable if FAU_GEN Security audit data generation is included in the
PP/ST:
a) Basic: Any attempts at unlocking a locked interactive session.
FTA_SSL_EXT.1 TSF-initiated session locking
Hierarchical to: No other components
Dependencies: FIA_UIA_EXT.1 User identification and authentication
FTA_SSL_EXT.1.1 The TSF shall, for local interactive sessions, [selection: lock the session – disable any
of the user’s data access/display devices other than unlocking the session, and
requiring that the administrator re-authenticate to the TSF prior to unlocking the
session; terminate the session] after a security administrator-specified time period of
inactivity.
FTA_SSL Session locking and
termination
Commenti su questo manuale