{"product_id":10033,"v_id":10033,"product_name":"eEye Retina Network Security Scanner Version 5.4.21.53","certification_status":"Not Certified","certification_date":"2007-05-25T00:05:00Z","tech_type":"Wireless Monitoring","vendor_id":{"name":"eEye Digital Security Corporation","website":"www.eeye.com"},"vendor_poc":"Kimberly Lim","vendor_phone":"949-900-4115","vendor_email":"klim@eeye.com","assigned_lab":{"cctl_name":"Leidos Common Criteria Testing Laboratory"},"product_description":"<div style=\"margin: 0in 0in 6pt\"><font size=\"2\">The TOE, eEye Retina Network Security Scanner Version 5.4.21.53, is a software-only, <span style=\"layout-grid-mode: line; color: black\">non-disruptive network security scanner</span> &ndash; the TOE is not invasive and does not interfere with the operation of the IT system being monitored. The TOE <span style=\"layout-grid-mode: line; color: black\">does not scan network traffic anomalies reported by sensors, as do some other types of IDS products. Instead, the TOE scans hosts identified within a specific IP range. Ports on targeted hosts are monitored for specific activities and events identified in an audit policy.</span></font></div>\r\n<div style=\"margin: 0in 0in 6pt\"><font size=\"2\">Retina Network Security Scanner comprises the scanning engine, which runs as a Windows service, and the management shell, which runs as a user mode application. The scanning engine performs all the scanning operations, based on the configured audit policies. The management shell provides a GUI that handles all aspects of the local user interface of a scan, such as scan range entry, audit set-up, results display, and reporting. <span>The evaluated configuration is supported on Microsoft Windows </span><span style=\"color: black\">NT 4.0 SP6a, Microsoft Windows 2000, Microsoft Windows Server 2003, and Microsoft Windows XP</span>.</font></div>","evaluation_configuration":null,"security_evaluation_summary":"<div style=\"margin: 0in 0in 6pt\"><font size=\"2\">The evaluation was carried out in accordance with the Common Criteria Evaluation and Validation Scheme (CCEVS) process. The criteria against which the eEye Retina Network Security Scanner Version 5.4.21.53 TOE was judged are described in the Common Criteria for Information Technology Security Evaluation, Version 2.2 and International Interpretations effective on 8 October 2004.&nbsp;The evaluation methodology used by the Evaluation Team to conduct the evaluation is the Common Methodology for Information Technology Security Evaluation, Version 2.2.&nbsp;Science Applications International Corporation (SAIC) determined that the evaluation assurance level (EAL) for the product is the EAL2 family of assurance requirements.&nbsp;The product, when configured and used as specified in &ldquo;Retina Network Security Scanner Users Manual&rdquo;, Version 5-3-1, 4 May 2006, and in accordance with the CC guidance in the Release Notes for Retina Network Security Scanner Version 5.4.21 satisfies all of the security functional requirements stated in the Retina Network Security Scanner Security Target.&nbsp;</font></div>\r\n<div style=\"margin: 0in 0in 6pt\"><font size=\"2\">Several functions such as auto-update were excluded from the evaluation.&nbsp;See the VR and ST for a complete list.</font></div>\r\n<div style=\"margin: 0in 0in 6pt\"><font size=\"2\">One validator on behalf of the CCEVS Validation Body monitored the evaluation carried out by SAIC.&nbsp;The evaluation was completed in May 2007.&nbsp;Results of the evaluation can be found in the Common Criteria Evaluation and Validation Scheme Validation Report, (report number CCEVS-VR-07-0044) prepared by CCEVS.</font></div>","environmental_strengths":"<div style=\"margin: 0in 0in 6pt\"><font size=\"2\">The eEye Retina Network Security Scanner Version 5.4.21.53 provides a low to moderate level of independently assured security in a conventional TOE and is suitable for a cooperative non-hostile environment with good physical access security and competent administrators.</font></div>\r\n<div style=\"margin: 0in 0in 6pt\"><font size=\"2\">The primary security functionality of the TOE is to provide the capabilities for non-intrusive scanning of IT systems within the IT environment of the TOE. The results of such scans identify vulnerabilities within the scanned IT systems that could lead to an intrusion of the IT environment. </font></div>\r\n<div style=\"margin: 0in 0in 6pt\"><font size=\"2\">eEye Retina Network Security Scanner Version 5.4.21.53 provides the following security functions:</font></div>\r\n<div style=\"margin: 0in 0in 6pt\"><strong><font size=\"2\">Network Security System</font></strong></div>\r\n<div style=\"margin: 0in 0in 6pt\"><font size=\"2\">The TOE scans hosts identified within a specific IP range against predefined audit policies (that are set at the granularity of a specific host or collection of hosts), to detect known potential vulnerabilities. The audit policies govern the collection of data regarding inappropriate activities on the IT systems the TOE monitors. The TOE collects the following information from targeted IT systems:</font></div>\r\n<div style=\"margin: 0in 0in 6pt 0.45in; text-indent: -0.25in\"><span><font size=\"2\">&middot;</font><span style=\"font: 7pt 'Times New Roman'\">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; </span></span><font size=\"2\">Security configuration changes</font></div>\r\n<div style=\"margin: 0in 0in 6pt 0.45in; text-indent: -0.25in\"><span><font size=\"2\">&middot;</font><span style=\"font: 7pt 'Times New Roman'\">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; </span></span><font size=\"2\">Access control configuration</font></div>\r\n<div style=\"margin: 0in 0in 6pt 0.45in; text-indent: -0.25in\"><span><font size=\"2\">&middot;</font><span style=\"font: 7pt 'Times New Roman'\">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; </span></span><font size=\"2\">Service configuration</font></div>\r\n<div style=\"margin: 0in 0in 6pt 0.45in; text-indent: -0.25in\"><span><font size=\"2\">&middot;</font><span style=\"font: 7pt 'Times New Roman'\">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; </span></span><font size=\"2\">Authentication configuration</font></div>\r\n<div style=\"margin: 0in 0in 6pt 0.45in; text-indent: -0.25in\"><span><font size=\"2\">&middot;</font><span style=\"font: 7pt 'Times New Roman'\">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; </span></span><font size=\"2\">Accountability policy configuration</font></div>\r\n<div style=\"margin: 0in 0in 6pt 0.45in; text-indent: -0.25in\"><span><font size=\"2\">&middot;</font><span style=\"font: 7pt 'Times New Roman'\">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; </span></span><font size=\"2\">Detected known vulnerabilities.</font></div>\r\n<div style=\"margin: 0in 0in 6pt\"><strong><font size=\"2\">Security Management</font></strong></div>\r\n<div style=\"margin: 0in 0in 6pt\"><font size=\"2\">The <span style=\"color: black\">TOE</span> provides the user with a GUI that can be used to configure and modify the options of the TOE. In particular, the GUI provides the user with the following capabilities:</font></div>\r\n<div style=\"margin: 0in 0in 6pt 0.5in; text-indent: -0.25in\"><span><font size=\"2\">&middot;</font><span style=\"font: 7pt 'Times New Roman'\">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; </span></span><font size=\"2\">Discover target hosts by IP address, IP address range, CIDR notation, or host name</font></div>\r\n<div style=\"margin: 0in 0in 6pt 0.5in; text-indent: -0.25in\"><span><font size=\"2\">&middot;</font><span style=\"font: 7pt 'Times New Roman'\">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; </span></span><font size=\"2\">Configure and launch audits of discovered hosts, including selecting audit options</font></div>\r\n<div style=\"margin: 0in 0in 6pt 0.5in; text-indent: -0.25in\"><span><font size=\"2\">&middot;</font><span style=\"font: 7pt 'Times New Roman'\">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; </span></span><font size=\"2\">Review results of audits, including classification of vulnerabilities and other collected data</font></div>\r\n<div style=\"margin: 0in 0in 6pt 0.5in; text-indent: -0.25in\"><span><font size=\"2\">&middot;</font><span style=\"font: 7pt 'Times New Roman'\">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; </span></span><font size=\"2\">Generate remediation and summary reports of the results of the audit.</font></div>","features":[]}