ISO/IEC 15408-2:2008 信息技术 安全技术 IT安全的评估准则 第2部分:安全功能要求
标准编号:ISO/IEC 15408-2:2008
中文名称:信息技术 安全技术 IT安全的评估准则 第2部分:安全功能要求
英文名称:Information technology — Security techniques — Evaluation criteria for IT security — Part 2: Security functional components
发布日期:2008-08
标准范围
ISO/IEC 15408-2:20 08定义了在使用ISO/IEC 15408进行的安全性评估中评估的安全性功能要求的内容和表述。它包含预定义的安全功能组件的综合目录,将满足市场上最常见的安全需求。这些是使用类、族和组件的分层结构组织的,并由全面的用户注释支持。ISO/IEC 15408-2:20 08还为不存在合适的预定义安全功能组件的定制安全要求的规范提供了指导。
ISO/IEC 15408-2:2008 defines the content and presentation of the security functional requirements to be assessed in a security evaluation using ISO/IEC 15408. It contains a comprehensive catalogue of predefined security functional components that will meet most common security needs of the marketplace. These are organized using a hierarchical structure of classes, families and components, and supported by comprehensive user notes.
ISO/IEC 15408-2:2008 also provides guidance on the specification of customized security requirements where no suitable predefined security functional components exist.
标准预览图


