NIAP: View Technical Decision Details
NIAP/CCEVS
  NIAP  »»  Protection Profiles  »»  Technical Decisions  »»  View Details  
Archived TD0029:  Removal of Maximum Lifetime SA Test from FCS_IPSEC_EXT.1.4 AA

Publication Date
2014.12.15

Protection Profiles
PP_WLAN_AS_V1.0

Other References
PP_WLAN_AS_V1.0, requirement FCS_IPSEC_EXT.1.4

Issue Description

Test 4 in the Assurance Activities for FCS_IPSEC_EXT.1.4 states that the evaluator  shall configure time-based maximum lifetime for an SA, establish the SA, and observe that the SA is closed or renegotiated in the established time.  It is possible for the maximum time-based lifetime for an SA to be on the order of days, which will require a lot of resources to test.

Resolution

This test should be removed from the assurance activities of FCS_IPSEC_EXT.1.4 for this PP.

Justification

This test has been removed in the assurances activities for the updated IPSec requirements.

 
 
Site Map              Contact Us              Home