12.2 Limitation on multiple concurrent sessions (FTA_MCS)

Family behaviour

This family defines requirements to place limits on the number of concurrent sessions that belong to the same user.

Component levelling

FTA_MCS.1 Basic limitation on multiple concurrent sessions provides limitations that apply to all users of the TSF.

FTA_MCS.2 Per user attribute limitation on multiple concurrent sessions extends FTA_MCS.1 Basic limitation on multiple concurrent sessions by requiring the ability to specify limitations on the number of concurrent sessions based on the related security attributes.

Management: FTA_MCS.1

The following actions could be considered for the management activities in FMT:

a)    management of the maximum allowed number of concurrent user sessions by an administrator.

Management: FTA_MCS.2

The following actions could be considered for the management activities in FMT:

a)    management of the rules that govern the maximum allowed number of concurrent user sessions by an administrator.

Audit: FTA_MCS.1, FTA_MCS.2

The following actions should be auditable if FAU_GEN Security audit data generation is included in the PP/ST:

a)    Minimal: Rejection of a new session based on the limitation of multiple concurrent sessions.

b)    Detailed: Capture of the number of currently concurrent user sessions and the user security attribute(s).