commoncriteria / virtualization

Protection Profile for Virtualization
The Unlicense
3 stars 0 forks source link

5.1.5 FIA_AFL_EXT.1.2 #43

Closed robertmclemons closed 3 years ago

robertmclemons commented 3 years ago

Change the selection text from "prevent the offending Administrator from successfully establishing remote session using any authentication method that involves a password or PIN" to "prevent the offending Administrator from successfully establishing a remote session using any of the selected remote authentication methods"

This change prevents administrators from bypassing the lockout by remotely logging in using some other remote login method specified by FIA_UAU.5.1. In other words, this change synchronizes the FIA_AFL_EXT.1.2 and FIA_UAU.5.1 requirements.

robertmclemons commented 3 years ago

Given the resolution of the other issue, I think that this is not a problem.