commoncriteria / webbrowser

Protection Profile for Web Browsers
The Unlicense
1 stars 0 forks source link

FIA_X509_Ext.2.2 #27

Open japit opened 9 years ago

japit commented 9 years ago

This is in the App PP but relates to a comment received on the Browser so I'll enter the issue here. Consider revising tests per A's recommendations.

Test 1: The evaluator shall demonstrate that a valid certificate correctly passes the certificate validation process. Test 2: The evaluator shall manipulate the environment in such a way as to inhibit the certification validation process. Once this manipulation is complete, the evaluator shall ensure that the action selected in FIA_X509_EXT.2.2 is performed when a valid certificate is presented. If the selected action is administrator configurable, then the evaluator shall follow the operational guidance to determine that all supported administrator configurable options behave in accordance with their documented operation. Test 3: The evaluator shall demonstrate that manually modifying a valid certificate so as to make it invalid, no longer correctly passes the certification validation process.

Or something like that.

japit commented 9 years ago

Also entered as Issue #128 against the App PP