[Public Interpretations Database]

PD-0061: Security Targets for a Software TOE that runs on Multiple Platforms


This decision represents a long-term technical decision based on an OD, and may not be the same as the final results of the source OD. With respect to published criteria documentation and scheme documents, it provides suggested guidance on evaluation direction, but is not authoritative. Authoritative decisions are provided through the published criteria documents and published scheme and international interpretations thereof. With respect to published PPs, PDs are authoritative corrections to the PP, based on input from the PP author (if available), that are in force until the publication of the next revision of that PP.


Effective Date: 2002-08-13
Last Modified 2006-08-02

Issue

Are multiple Security Targets required for a software TOE that can operate on more than one hardware base and/or more than one operating system?

Resolution

It is generally acceptable to accommodate multiple platforms in one ST as long as:

  1. The functional and assurance requirements (including CC operations) are the same for all platforms.

  2. The TOE description and all the TOE behavioral (i.e., TOE description, the initial statements explaining how the requirements are met) describe how the requirements are met for each platform.

Modification History:

2004-08-12
Updated effective date to reflect the date the PD was issued. (August 2004 NIB 6.c.xiv)

References:

  • None

Related NIs:

  • None

Related CCIMB-INTERPs:

  • None

Source OD: 0139