
Cisco Aggregation Services Router (ASR) 900 Series Security Target
Page 29 of 52
FAU_GEN.1.2 The TSF shall record within each audit record at least the following information:
a) Date and time of the event, type of event, subject identity, and the outcome (success or
failure) of the event; and
b) For each audit event type, based on the auditable event definitions of the functional
components included in the PP/ST, [information specified in column three of Table 19].
Table 19 Auditable Events
Additional Audit Record Contents
Failure to establish an IPsec SA.
Establishment/Termination of an
IPsec SA.
Reason for failure.
Non-TOE endpoint of connection (IP
address) for both successes and
failures.
Failure to establish an SSH session
Establishment/Termination of an SSH
session.
Reason for failure.
Non-TOE endpoint of connection
(IP address) for both successes and
failures.
All use of the identification and
authentication mechanism.
Provided user identity, origin of the
attempt (e.g., IP address).
All use of the authentication
mechanism.
Origin of the attempt (e.g., IP
address).
Comentarios a estos manuales