GB/T 18336.2-2001 in English
SUPERSEDEDInformation technology―Security techniques―Evaluation criteria for IT security―Part 2:Security functional requirements
- Issued on:2001-03-08
- Implemented on:2001-12-01
- File Format:PDF
- Delivery:Via email within 10 business days
$2,222.00
《GB/T 18336.2-2001信息技术 安全技术 信息技术安全性评估准则 第2部分:安全功能要求》由TC260(全国网络安全标准化技术委员会)归口,主管部门为国家标准化管理委员会。
本标准等同采用国际标准ISO/IEC15408-2:1999《信息技术 安全技术 信息技术安全性评估准则 第2部分:安全功能要求》。
Scope
The security functional components defined in this standard are the basis for TOE IT security functional requirements expressed in protection profiles (PP) or security objectives (ST). These requirements describe the expected security behavior of the object of evaluation (TOE) in order to meet the security objectives stated in the PP or ST. These requirements describe security features that can be detected by the user through direct interaction (i.e. input, output) with the TOE or through the TOE's response to stimuli. The Security Functional Component expresses the requirements for combating threats in the assumed TOE operating environment, or involves all identified organizational security policies and assumptions. The readers of this standard include users, developers and evaluators of secure IT systems and products. Chapter 4 of Part One of GB/T 18336 provides additional information about the target audience of this standard and the use of this standard by these target readers. These audiences may use this International Standard as follows: - users, when selecting components to express functional requirements for safety purposes in PP or ST. Article 5.3 of the first part of GB/T 18336 gives detailed information on the relationship between security objectives and security requirements. - Developers, when building TOEs against actual or anticipated user security requirements, can find in this International Standard a standardized approach to understanding these security requirements. They may also use the content of this standard as a basis for further defining TOE security functions and mechanisms that meet these requirements. - The assessor, using the functional requirements defined in this standard, verifies whether the TOE functional requirements in the PP or ST meet the IT security purpose and shall consider whether all dependencies are satisfied. Evaluators should also use the content of this standard to help determine that a given TOE satisfies the stated requirements

Loading PDF document...
Error loading PDF. Please make sure the file is valid and try again.
We also recommend
-

GB/T 44882-2024 in English
Information technology—Closed captioning
2024-11-28 -

GB/T 33842.2-2017 in English
Information technology-Conformance testing methodology for biometric data interchange formats defined in GB/T 26237-Part 2:Finger minutiae data
2017-05-31 -

GB/T 28826.2-2020 in English
Information technology—Common biometric exchange formats framework—Part 2:Procedures for the operation of the biometric registration authority
2020-04-28 -

GB/T 26237.6-2014 in English
Information technology—Biometric data interchange formats—Part 6: Iris image data
2014-12-05 -

GB/Z 153-2025 in English
Information technology—Biometrics—Characterization and measurement of difficulty for fingerprint databases for technology evaluation
2025-12-03 -

GB/T 38776-2020 in English
Classification and codes for electronic commerce software component
2020-04-28