commoncriteria / application

Protection Profile for Application Software
The Unlicense
9 stars 3 forks source link

FMT_CFG_EXT1.4 - Usage of TSS in the AA #70

Closed bourdett closed 10 years ago

bourdett commented 10 years ago

Comment: For AA it would be better to have something like:

Have the TSS list out the PII used by the application, and then an AA would be to check that approval is given by the user before any PII from the provided list is transmitted.

bourdett commented 10 years ago

CFG_EXT 1.4 has since become DEC_EXT 1.5. The TSS suggestion from above was added.