User application notes
This component enforces that the TSF provide the capability to rollback all operations; however, the user can choose to rollback only a part of them.
Operations
Assignment:
In FDP_ROL.2.1, the PP/ST author should specify the access control SFP(s) and/or information flow control SFP(s) that will be enforced when performing rollback operations. This is necessary to make sure that roll back is not used to circumvent the specified SFPs.
In FDP_ROL.2.1 the PP/ST author should specify the list of objects that are subjected to the rollback policy.
In FDP_ROL.1.2 the PP/ST author should specify the boundary limit to which rollback operations may be performed. The boundary may be specified as a predefined period of time, for example, operations may be undone which were performed within the past two minutes. Other possible boundaries may be defined as the maximum number of operations allowable or the size of a buffer.