High robustness requirements in a Common Criteria protection profile

被引:1
|
作者
Nguyen, Thuy D. [1 ]
Levin, Timothy E. [1 ]
Irvine, Cynthia E. [1 ]
机构
[1] Naval Postgrad Sch, Monterey, CA 93940 USA
关键词
common criteria; separation kernel; high robustness; dynamic configuration; least privilege;
D O I
10.1109/IWIA.2006.13
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The development of a Common Criteria protection profile for high-robustness separation kernels requires explicit modifications of several Common Criteria requirements as well as extrapolation from existing (e.g., medium robustness) guidance and decisions. The draft U.S. Government Protection Profile for Separation Kernels in Environments Requiring High Robustness (SKPP) is intended to be applicable to a class of products (the target of evaluation, or TOE) that includes, but is not limited to, real time and embedded systems. This paper describes certain SKPP concepts and requirements and provides underlying motivations and rationale for their inclusion in the SKPP. Primary areas of focus are the security requirements regarding information flow, dynamic configuration, and the application of the principle of least privilege to restrict actions of active entities.
引用
收藏
页码:66 / +
页数:3
相关论文
共 50 条
  • [21] ROBUSTNESS AND OPTIMALITY AS CRITERIA FOR DECISIONS
    WHITE, DJ
    OPERATIONAL RESEARCH QUARTERLY, 1973, 24 (02) : 311 - 313
  • [22] Control criteria for deformation of foundation pits based on protection requirements of adjacent pile foundations
    Mu L.-L.
    Zhu M.-X.
    Huang M.-S.
    Kang J.-W.
    Ji Z.-C.
    Yu X.
    Yantu Gongcheng Xuebao/Chinese Journal of Geotechnical Engineering, 2021, 43 (03): : 465 - 470
  • [23] Eliciting security requirements and tracing them to design: an integration of Common Criteria, heuristics, and UMLsec
    Houmb, Siv Hilde
    Islam, Shareeful
    Knauss, Eric
    Jurjens, Jan
    Schneider, Kurt
    REQUIREMENTS ENGINEERING, 2010, 15 (01) : 63 - 93
  • [24] A common criteria based security requirements engineering process for the development of secure information systems
    Mellado, Daniel
    Fernandez-Medina, Eduardo
    Piattini, Mario
    COMPUTER STANDARDS & INTERFACES, 2007, 29 (02) : 244 - 253
  • [25] Eliciting security requirements and tracing them to design: an integration of Common Criteria, heuristics, and UMLsec
    Siv Hilde Houmb
    Shareeful Islam
    Eric Knauss
    Jan Jürjens
    Kurt Schneider
    Requirements Engineering, 2010, 15 : 63 - 93
  • [26] Are Adversarial Robustness and Common Perturbation Robustness Independant Attributes ?
    Laugros, Alfred
    Caplier, Alice
    Ospici, Matthieu
    2019 IEEE/CVF INTERNATIONAL CONFERENCE ON COMPUTER VISION WORKSHOPS (ICCVW), 2019, : 1045 - 1054
  • [27] Robustness Requirements for the Design of Plane Frames
    Campione, Giuseppe
    PRACTICE PERIODICAL ON STRUCTURAL DESIGN AND CONSTRUCTION, 2022, 27 (03)
  • [28] Incorporating robustness requirements into antiwindup design
    Turner, Matthew C.
    Herrmann, Guido
    Postlethwaite, Ian
    IEEE TRANSACTIONS ON AUTOMATIC CONTROL, 2007, 52 (10) : 1842 - 1855
  • [29] Minimal Embedded Robustness Requirements Analysis
    Jaffe, M. S.
    2011 IEEE/AIAA 30TH DIGITAL AVIONICS SYSTEMS CONFERENCE (DASC), 2011,
  • [30] MINIMAL EMBEDDED ROBUSTNESS REQUIREMENTS ANALYSIS
    Jaffe, M. S.
    2011 IEEE/AIAA 30TH DIGITAL AVIONICS SYSTEMS CONFERENCE (DASC), 2011,