【正文】
on design, implementation, vulnerability analysis, low level design documentation, development and system automated configuration management, and an informal security policy model В Γ EAL5: Semiformal Design and Test ? Higher assurance, risk situations – where some peration resistance is needed ? Requires rigorous mercial development practices and moderate use of specialist engineering techniques ? Additional requirements on semiformal functional specification, highlevel design, and their correspondence, vulnerability, and covert channel analysis В Γ EAL6: Semiformally Verified Design and Tested ? High Assurance where peration resistance is necessary ? Additional requirements on analysis, layered TOE design, semiformal lowlevel design documentation, plete CM system automation and a structured development environment, and vulnerability/covert channel analysis В Γ EAL7: Formally Verified Design and Tested ? Highest assurance – where high resistance to peration is necessary ? Assurance is gained through application of formal methods in the documentation of the functional specification and highlevel design ? Additional requirements for plete developer testing and plete independent confirmation of the test results В Γ COMP ? CC TCSEC ITSEC D E0 EAL1 EAL2 C1 E1 EAL3 C2 E2 EAL4 B1 E3 EAL5 B2 E4 EAL6 B3 E5 EAL7 A1 E6 В Γ BS7799 ? BS7799 – by BSI – the British Standards Institution – 2023, ISO/17799 – Goto: “BS77991_1999(ISO).doc” ? Two parts – ISO17799 – BS77992 В Γ BS7799s介紹 ? 有關敏感資料管理的國際認可標準,強調資料的保密性及完整性。不要求物理安全機制。 “” В Γ Security Level 2 ? // 該級增加了防干擾或竄改的物理安全機制要求,包括封裝、封條、防撬等。 ? // 該級要求基于標識的認證機制。 ? // 該級系統(tǒng)得運行在 EAL4/CC以上安全級上。 :44:5211:44Mar234Mar23 ? 1故人江海別,幾度隔山川。 。 , March 4, 2023 ? 很多事情努力了未必有結果,但是不努力卻什么改變也沒有。 :44:5211:44:52March 4, 2023 ? 1意志堅強的人能把世界放在手中像泥塊一樣任意揉捏。 2023年 3月 4日星期六 11時 44分 52秒 11:44:524 March 2023 ? 1空山新雨后,天氣晚來秋。 :44:5211:44Mar234Mar23 ? 1越是無能的人,越喜歡挑剔別人的錯兒。 2023年 3月 4日星期六 上午 11時 44分 52秒 11:44: ? 1最具挑戰(zhàn)性的挑戰(zhàn)莫過于提升自我