
Cisco Intrusion Prevention System Security Target
Table 17 Auditable Events
Additional Audit Record Contents
Security Functional Requirements Drawn from NDPP
Failure to establish an HTTPS session
Establishment/Termination of an
HTTPS session.
Reason for failure.
Non-TOE endpoint of connection (IP address)
for both successes and failures.
Failure to establish an SSH session
Establishment/Termination of an SSH
session.
Reason for failure.
Non-TOE endpoint of connection (IP address)
for both successes and failures.
Failure to establish a TLS session.
Establishment/Termination of a TLS
session.
Reason for failure.
Non-TOE endpoint of connection (IP address) for
both successes and failures.
All use of the identification and
authentication mechanism.
Provided user identity, origin of the attempt (e.g.,
IP address).
All use of the authentication
mechanism.
Origin of the attempt (e.g., IP address).
The old and new values for the time.
Origin of the attempt (e.g., IP address).
No additional information.
Indication that TSF self-test was
completed.
Any additional information generated by the tests
beyond “success” or “failure”.
Any attempts at unlocking of an
interactive session.
No additional information.
The termination of a remote session by
No additional information.
Kommentare zu diesen Handbüchern