Belkin® Secure DVI KVM Switch, Secure KM Switch and
Secure Windowing KVM EAL 4 augmented ALC_FLR.3 Security Target
Table 10: TOE Security Functional Requirements summary
6.1.1 Class FDP: User Data Protection
6.1.1.1 FDP_ETC.1
Hierarchical to:
Dependencies:
FDP_ETC.1.1
data, controlled under the SFP(s), outside of the TOE.
FDP_ETC.1.2
security attributes.
6.1.1.2 FDP_IFC.1a Subset Information Flow Control (Data Separation)
Hierarchical to:
Dependencies:
FDP_IFC.1.1a
Application Note: The data flow is uni‐directional in the TOE. i.e. the TOE
6.1.1.3 FDP_IFC.1b Subset information flow control (Unidirectional data flow)
Hierarchical to:
Dependencies:
FDP_IFC.1.1b
6.1.1.4
FDP_IFF.1a
Hierarchical to:
Export of user data without security attributes
No other components.
FDP_ACC.1 Subset access control, or
FDP_IFC.1a subset information flow control
The TSF shall enforce the Data Separation SFP when exporting user
The TSF shall export the user data without the user data's associated
No other components.
FDP_IFF.1a Simple security attributes
The TSF shall enforce the Data Separation SFP on the set of
PERIPHERAL PORT GROUPS, and the bi‐directional flow of
PERIPHERAL DATA between the SHARED PERIPHERALS and the
SWITCHED COMPUTERS.
implementation is more conservative than claimed Protection
Profile.
No other components.
FDP_IFF.1a Simple security attributes
The TSF shall enforce the Unidirectional Forced Data Flow SFP on
the POINTING DEVICE and on the KEYBOARD PERIPHERAL DATA
to restrict data flow from SHARED PERIPHERALS to SWITCHED
COMPUTERS only.
Simple Security Attributes (Data Separation)
No other components.
Rev. 1.01
Page | 44