8.3 Management of TSF data (FMT_MTD)

Family behaviour

This family allows authorised users (roles) control over the management of TSF data. Examples of TSF data include audit information, clock, system configuration and other TSF configuration parameters.

Component levelling

FMT_MTD.1 Management of TSF data allows authorised users to manage TSF data.

FMT_MTD.2 Management of limits on TSF data specifies the action to be taken if limits on TSF data are reached or exceeded.

FMT_MTD.3 Secure TSF data ensures that values assigned to TSF data are valid with respect to the secure state.

Management: FMT_MTD.1

The following actions could be considered for the management functions in FMT Management:

a)    managing the group of roles that can interact with the TSF data.

Management: FMT_MTD.2

The following actions could be considered for the management functions in FMT Management:

a)    managing the group of roles that can interact with the limits on the TSF data.

Management: FMT_MTD.3

There are no additional management activities foreseen for this component.

Audit: FMT_MTD.1

The following actions should be auditable if FAU_GEN Security audit data generation is included in the PP / ST:

a)    Basic: All modifications to the values of TSF data.

Audit: FMT_MTD.2

The following actions should be auditable if FAU_GEN Security audit data generation is included in the PP / ST:

a)    Basic: All modifications to the limits on TSF data;

b)    Basic: All modifications in the actions to be taken in case of violation of the limits.

Audit: FMT_MTD.3

The following actions should be auditable if FAU_GEN Security audit data generation is included in the PP / ST:

a)    Minimal: All rejected values of TSF data.