Skip to content

PSK handling in RadSec #14

@jfisherbah

Description

@jfisherbah

FCS_RADSEC_EXT.1.3 lists PSK cipher suites as selectable, with an app note to include at least one of them if support for PSKs is selected in FCS_RADSEC_EXT.1.2. We already have FCS_RADSEC_EXT.2 as a selection-based requirement for when the TOE supports PSKs. Rather than have a selection that could be null in a mandatory SFR, our recommendation would be to add a new element to FCS_RADSEC_EXT.2 and put the selection for PSK-based cipher suites in there. That way a TOE that does not support PSK won't have to worry about filling that selection out with a null value. Is this acceptable?

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions