3 ms·
> EAL4+ is useless against the prevailing threat actors Hold on a second. Assurance level is about, well, level of assurance the developers can provide. It is
by kramerger 3y ago
> EAL4+ is useless against the prevailing threat actors
Hold on a second. Assurance level is about, well, level of assurance the developers can provide. It is in most cases just paperwork.
CC has a different mechanism to define attacker capability & resources (cant recall what it's called) and set the security goals accordingly
- Veserv 3y agoThe AVA_VAN (vulnerability analysis) Security Assurance Requirement (SAR). AVA_VAN.4 requires “resistance to penetration attackers with a moderate attack potential”. AVA_VAN.4 is only required for EAL5 and higher. You could individually incorporate a higher AVA_VAN into a lower EAL as a augmentation, but few do that. You also do not get any of the other conformance assurances that a higher EAL gives you. There is a reason we use EAL as a whole instead of just quoting the AVA_VAN at each other. Though maybe you are talking about the Security Functional Requirements (SFR) which define the security properties of your system? That is somewhat orthogonal. You have properties and assurance you conform to the properties. Conformance more closely maps to “level of security” as seen in the AVA_VAN SAR. However, the properties are just as important for the usage of the final product because you might be proving you absolutely certainly do nothing useful.