Chapter6
TOESUMMARY
SPECIFICATION
TableofContents
TOESECURITYFUNCTIONS...................................................................................6-1
6.1TOESECURITYFUNCTIONS
6.1.1SecurityAuditing
TheTOEprovidesanauditfeatureforactionsrelatedtooperatorauthenticationattempts
andadministratoractions
lFPT_STM.1Timestamps
TheclockfunctionoftheTOEprovidesasourceofdateandtimeinformationforthe
appliance,usedinaudittimestamps.Theclockfunctionisreliantonthesystemclock
providedbytheunderlyinghardware.
lFAU_GEN.1Auditdatageneration
AlllogsarestoredintheTOEwheneverthereisnewloggeneratedandthentheTOE
transferredtheloglestoSNMP/SYSLOGServerswithSNMP/SYSLOGnetwork
protocolthroughinternalnetworkinaconstantperiodtime.Thelogleisstored
underthe‘data’directoryoftheash/diskinsidetheTOE.TheZXROSrecordsthe
start-upandshutdownoftheauditfunction,securityeventsandtheactivityofthe
administrator.
Alarmlogging:Thesecurityeventsourceisalleventsthataffectattemptstobreach
systemsecuritysuchasfailedloginattempts.Securityeventsaregeneratedbythe
securityapplication.
lauthenticationalarm
1.I&Aauthenticationsuccess
2.I&Aauthenticationfailure
lusermanagementalarm
1.useraccountislocked
2.useraccountisunlocked
3.useraccountisenabled
4.useraccountisdisabled
lRADIUSalarmlog
6-1
SJ-20110815105844-030|2011/08/19(R1.6)ZTECORPORATION