U.S. Government Approved Protection Profile - Validated Protection Profile - Peripheral Sharing Switch for Human Interface Devices Protection Profile, Version 2.1
Short Name: pp_psshid_v2.1
Technology Type: Peripheral Switch
CC Version: 3.1
Date: 07 September 2010
Preceded By: pp_psshid_v2.0
Conformance Claim: EAL2 Augmented
Please note: This serves as an addendum to the VR for the Original Evaluated PP
PP OVERVIEW
Herewith a brief summary, sufficiently detailed to enable a potential user to determine whether the PP is of interest.
This Protection Profile specifies U.S. Department of Defense minimum-security requirements for peripheral switches; devices, which enable a single set of human interface devices to be shared between multiple computers. The Protection Profile is consistent with Common Criteria.
SECURITY EVALUATION SUMMARY
Because a PP is written to be implementation-independent, there may be some ambiguities that do not arise until a specific implementation is being evaluated against it. When this happens, a resolution is established through the Observation Decision (OD) process in the form of a Precedent Decision (PD), which is to be used consistently in subsequent evaluations involving the PP in question. Precedent Decisions (PD-0093) specifically associated with this PP is included in version 2.0.:
ASSURANCE MAINTENANCE
July 25, 2007
Assurance maintenance has been performed on this protection profile to update it to the common criteria version 3.1. This update caused a change in version number (from 1.0 to 1.1) that indicates an update has occurred. The updates included revisions based on the assurance requirements of the CC 3.1, removal of FPT_SEP and FPT_RVM since it is now covered by ADV_ARC and replacement of Explicitly stated requirements with Extended requirements (only the nomenclature changed and not the requirements.)
Aug 21 2008
Assurance maintenance has been performed on this protection profile. This update caused a change in version number (from 1.1 to 1.2) that indicates an update has occurred. The update added CC version 3.1 the Conformance Claim requirement. The following functional components were updated to reflect CC version 3.1, FDP_IFF.1, FMT_MSA.1, FDP_ETC.1, and FDP_ITC.1. In addition, FMT_SMF.1 was added as a dependency of FMT_MSA.1 based on the CC version 3.1 changes.
June 1, 2010
Assurance maintenance has been performed on this protection profile. This update caused a change in version number (from 1.2 to 2.0) that indicates an update has occurred. The changes included review and update to the assumptions, threats and objectives. Security functional requirements were adjusted to accommodate the adjustment in the security threats and objectives. A new requirement was added to restrict USB connections and the EAL was changed from four to two. This change also included updates based on questions in PD-0093.
September 07, 2010
Assurance maintenance has been performed on this protection profile. This update caused a change in version number (from 2.0 to 2.1) that indicates an update has occurred. The change includes replacing the inadvertent removal of the ROM requirement.
Assigned to the following Validated Products
- VID10446 – ATEN/IOGear Secure KVM Switch Series
- VID10450 – Avocent Cybex SwitchView SC Series Switches (Models SC620 (part number 520-866-501), SC640 (part number 520-869-501), and SC740 (part number 520-868-501))
- VID10471 – Avocent Cybex SwitchView SC680 Model 520-865-501 and Avocent Cybex SwitchView SC780 Model 520-867-501
- VID10455 – Belkin Secure KVM Switch (Models F1DN102B, F1DN104B, F1DN102C, F1DN104C, F1DN104E, F1DN104F)
- VID10514 – Black Box Secure Analogue and Digital KVM Switches, Version 1.0
- VID10492 – Stratus CM 4110 and Stratus CM 4120
- VID10481 – Tripp Lite Secure KVM Switch Series
Please forward any questions or comments to pp-comments@niap-ccevs.org

