
Cisco Intrusion Prevention System Security Target
Exceptions to
Shall/Shall Not
Statement(s)
5.6.3.1 Owner
Assurances of
Possession of a Static
Private Key
None. Static key is
not supported.
5.6.3.2 Recipient
Assurance of Owner’s
Possession of a Static
Private Key
None. Static key is
not supported.
5.6.3.2.1 Recipient
Obtains Assurance
through a Trusted Third
Party
5.6.3.2.2 Recipient
Obtains Assurance
Directly from the
Claimed Owner
None. Static key is
not supported.
5.6.4 Key Pair
Management
5.6.4.1 Common
Requirements on Static
and Ephemeral Key
Pairs
5.6.4.2 Specific
Requirements on Static
Key Pairs
None. Static key is
not supported.
5.6.4.3 Specific
Requirements on
Ephemeral Key Pairs
“An ephemeral key pair
should be generated as
close to its time of use
as possible”
5.7.1 Diffie-Hellman
Primitives
5.7.1.1 Finite Field
Cryptography Diffie-
Hellman (FFC DH)
Primitive
5.7.1.2 Elliptic Curve
Cryptography Cofactor
Diffie-Hellman (ECC
CDH) Primitive
5.7.2.1 Finite Field
Cryptography MQV
(FFC MQV) Primitive
5.7.2.1.1 MQV2 Form
of the FFC MQV
Primitive
Comentarios a estos manuales