8.5 Security attribute expiration (FMT_SAE)

Family behaviour

This family addresses the capability to enforce time limits for the validity of security attributes.

Component levelling

FMT_SAE.1 Time-limited authorisation provides the capability for an authorised user to specify an expiration time on specified security attributes.

Management: FMT_SAE.1

The following actions could be considered for the management functions in FMT Management:

a)    managing the list of security attributes for which expiration is to be supported;

b)    the actions to be taken if the expiration time has passed.

Audit: FMT_SAE.1

The following actions should be audited if FAU Security Audit is included in the PP/ST:

a)    Basic: Specification of the expiration time for an attribute;

b)    Basic: Action taken due to attribute expiration.