commoncriteria / commoncriteria/PSD

PSD v5.0: Permit UADs integrated into PSDs and remote controllers

Open
#4 0 comments 0 reactions 0 assignees View on GitHub

Nobody has claimed this yet.

Dominant language
HTML
Stars
0
Forks
0
PR merge metrics
No merged PRs in 30d

Description

Issue
PSD v4.0 already supports PSD-mediated UAD/peripheral access and requires that such a peripheral path not become a cross-domain communication path.

PSD v5.0 should clarify that a User Authentication Device (UAD), such as a CAC/smart-card reader, may be physically integrated into a PSD, secure KVM, or wired remote controller. A physically integrated implementation should not be excluded merely because it does not expose the UAD as a separate external device.
Modern secure KVMs frequently integrate the UAD into the main PSD enclosure or into a wired user-side controller. The relevant security property is not the physical location of the reader; it is that every protected-computer interface is independently mediated by the PSD and cannot transfer information to another protected computer.

Proposed clarification
Permit a UAD to be integrated into the PSD or a wired remote controller, provided that:

  • The PSD continues to control the association between the selected domain and each corresponding host-facing UAD interface.
  • The UAD path associated with one protected computer cannot communicate with, signal, or transfer authentication-related information to another protected computer.
  • Insertion, removal, reset, selection change, reconnection, and error handling cannot cause an incorrect host association or cross-domain transfer.
  • The integrated implementation does not provide an unmanaged bypass around PSD mediation.

A separately exposed UAD test port should not be required. The evaluator should use normal host-facing interfaces and other reasonable available access to verify the required security behavior. Requiring an additional external test connector would impose a product-design constraint without increasing assurance where normal interfaces enable the relevant tests.

Requested change

Add a limited clarification to the UAD requirements/use case and its Evaluation Activity permitting an integrated UAD. The clarification should retain the PSD v4.0 mediation, isolation, and selected-domain association requirements.

The Evaluation Activity should confirm that the evaluator can verify the independently mediated host-facing UAD behavior through the normal interfaces, without requiring a separately exposed UAD test port.

Contributor guide

No contributing guide indexed for this repository

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Research direction

Locate the UAD requirements/use case and the related Evaluation Activity in the PSD v5.0 materials. Read the existing PSD v4.0 mediation, isolation, and selected-domain association requirements first; done means the text permits an integrated UAD while preserving those controls and lets evaluators verify host-facing behavior through normal interfaces without requiring a separate test port.

Written by the indexing model from the issue text.

Assessment

Tech stack
html
Domain
documentation, security
Issue type
Documentation
Difficulty
3/5
Estimated time
1-2 days
Activity status
Active
Clarity
Mostly clear
Newbie friendliness
65/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.