[Public Interpretations Database]

I-0359: Ordering Of Basic And Minimal Audit For FMT_REV


TYPE:                 NIAP Interpretation
NUMBER:               I-0359
STATUS:               Withdrawn
REASON:               The problem identified by this OR is corrected in CC v2.1,
                      which became the current version while this queue entry
                      was awaiting development.

TITLE:                Ordering Of Basic And Minimal Audit For FMT_REV

SOURCE REFERENCE:     CC v2.0 Part 2 Subclause 8.4 FMT_REV
RELATED TO:           <None>

ISSUE:

The ordering of the BASIC and MINIMAL audit sections in the FMT_REV.1 component is incorrect.

STATEMENT

The following interprets the Audit section for the FMT_REV.1 component:

What is written as the "Basic" audit should be interpreted as the "Minimal" audit; what is written as the "Minimal" audit should be interpreted as the "Basic" audit.

RECOMMENDED CRITERIA CHANGES

TBS

SUPPORT:

By definition, as one moves from minimal to basic audit, the set of auditable actions should increase, not decrease. As written in CC, this is not so, for it says:

The following actions should be auditable if FAU_GEN Security audit data generation is included in the PP / ST:

a) Basic: unsuccessful revocation of security attributes;

b) Minimal: All attempts to revoke security attributes.

In order to preserve the proper ordering, what is listed in item a as "Basic" should really be "Minimal", and what is listed in item b as "Minimal" should really be "Basic".