11.1 Fault tolerance (FRU_FLT)

Family behaviour

The requirements of this family ensure that the TOE will maintain correct operation even in the event of failures.

Component levelling

FRU_FLT.1 Degraded fault tolerance requires the TOE to continue correct operation of identified capabilities in the event of identified failures.

FRU_FLT.2 Limited fault tolerance requires the TOE to continue correct operation of all capabilities in the event of identified failures.

Management: FRU_FLT.1, FRU_FLT.2

There are no management activities foreseen.

Audit: FRU_FLT.1

The following actions should be auditable if FAU_GEN Security audit data generation is included in the PP/ST:

a)    Minimal: Any failure detected by the TSF.

b)    Basic: All TOE capabilities being discontinued due to a failure.

Audit: FRU_FLT.2

The following actions should be auditable if FAU_GEN Security audit data generation is included in the PP/ST:

a)    Minimal: Any failure detected by the TSF.