
Cisco Intrusion Prevention System Security Target
and provides assured identification of its end points and protection of the channel data from
disclosure and detection of modification of the channel data.
FTP_ITC.1.2 The TSF shall permit the TSF, or the authorized IT entities to initiate
communication via the trusted channel.
FTP_ ITC.1.3 The TSF shall initiate communication via the trusted channel for
[communications with the following:
remote traffic-filtering devices over SSH
remote audit servers over TLS/HTTPS
remote iplog storage hosts over SCP (SSH) or TLS/HTTPS
remote file servers containing software/firmware updates over SCP (SSH) or
TLS/HTTPS].
5.2.7.2 FTP_TRP.1 Trusted Path
FTP_TRP.1.1 Refinement: The TSF shall use [SSH, TLS/HTTPS] provide a trusted
communication path between itself and remote administrators that is logically distinct from
other communication paths and provides assured identification of its end points and protection of
the communicated data from disclosure and detection of modification of the communicated data.
FTP_TRP.1.2 Refinement: The TSF shall permit remote administrators to initiate
communication via the trusted path.
FTP_TRP.1.3 The TSF shall require the use of the trusted path for initial administrator
authentication and all remote administration actions.
5.3 Rationale for Explicitly Stated Requirements
Table 18: Rationale for Explicitly Stated Requirements
Kommentare zu diesen Handbüchern