NIAP: View Technical Decision Details
NIAP/CCEVS
  NIAP  »»  Protection Profiles  »»  Technical Decisions  »»  View Details  
Archived TD0295:  Update to FPT_AEX_EXT.1.3 Assurance Activities

Publication Date
2018.03.08

Protection Profiles
PP_APP_v1.2

Other References
FPT_AEX_EXT.1.3

Issue Description

Applications running on Android cannot disable Android security features. Microsoft has announced that after July 31, 2018, it will no longer support the Enhanced Mitigation Experience Toolkit (EMET) on Windows platforms. An update to the Assurance Activity is required.

Resolution

The Android and Windows Assurance Activity for FPT_AEX_EXT.1.3 are modified as follows:

For Android: Applications running on Android cannot disable Android security features, therefore this requirement is met and no assurance activity is required.

For Windows: If the OS platform supports Windows Defender Exploit Guard, then the evaluator shall ensure that the application can run successfully with Windows Defender Exploit Guard configured and enabled. If the OS platform supports EMET, then the evaluator shall ensure that the application can run successfully with EMET configured and enabled.

 

This TD supersedes TD 269. TD 269 will be archived.

Justification

See Issue Description

 
 
Site Map              Contact Us              Home