[Public Interpretations Database]

PD-0001: Meaning of Resources in FDP_RIP.2


This decision represents a long-term technical decision based on an OD, and may not be the same as the final results of the source OD. With respect to published criteria documentation and scheme documents, it provides suggested guidance on evaluation direction, but is not authoritative. Authoritative decisions are provided through the published criteria documents and published scheme and international interpretations thereof. With respect to published PPs, PDs are authoritative corrections to the PP, based on input from the PP author (if available), that are in force until the publication of the next revision of that PP.


Effective Date: 2002-03-11
Last Modified 2006-08-02

Issue

In the context of the Firewall Profile, what is the meaning of "resource" in the FDP_RIP requirement?

Resolution

Objects that are used by the subjects of the TOE to communicate through the TOE to other subjects (e.g., packets) are resources subject to RIP. However, the internal data structures used to implement those resources are not subject to RIP, unless those internal structures are visible.

See also: NIAP Interpretation I-0350

Modification History:

2004-08-12
Updated effective date to reflect the date the PD was issued. (August 2004 NIB 6.c.xiv)

References:

  • ALFWPPv1.0, FDP_RIP

Related NIs:

  • I-0350: Clarification Of Resources/Objects For Residual Information Protection

Related CCIMB-INTERPs:

  • None

Source OD: 0001