FIA_UAU.4     Single-use authentication mechanisms

User application notes

This component addresses requirements for authentication mechanisms based on single-use authentication data. Single-use authentication data can be something the user has or knows, but not something the user is. Examples of single-use authentication data include single-use passwords, encrypted time-stamps, and/or random numbers from a secret lookup table.

The PP/ST author can specify to which authentication mechanism(s) this requirement applies.

Operations

Assignment:

In FIA_UAU.4.1, the PP/ST author should specify the list of authentication mechanisms to which this requirement applies. This assignment can be 'all authentication mechanisms'. An example of this assignment could be "the authentication mechanism employed to authenticate people on the external network".