HP 3PAR InForm OS Common Criteria Administrator's Reference (QL226-96586, October 2012)

9 Overview
2 Overview
This section provides an overview of Common Criteria.
Common Criteria
The Common Criteria (CC) are internationally well-recognized standards for the evaluation
of products incorporating security functionality. Important areas of security functionality
are:
Ensuring that the HP 3PAR Storage System is accessed by authorized administrators.
Ensuring that administrator access occurs over a secure interface.
Ensuring that data is written to storage devices in accordance with the policies set up
by the system administrator and that data on the storage device is accessible only to
hosts that the administrator has specified.
Ensuring that security relevant transactions are logged and traceable to the
administrator or entity performing the activity.
Ensuring that communication with off-platform entities (e.g., LDAP server) is done in a
secure manner.
CC evaluations are performed on a specifically defined product configuration, referred to
as the “evaluated configuration.” Some pieces of a typical installation for a product may
be excluded from the evaluated configuration for various reasons.
WARNING
To operate the product in the fully compliant configuration, you must use the evaluated
configuration including other pieces of the product technically negate the evaluated
status.
The next section discusses the evaluated configuration and describes the rationale for
exclusions. The decision on whether to include an unevaluated feature is up to the end
user this information is provided only as an aid to understanding the configuration
choices.
For more information on Common Criteria, see
http://www.commoncriteriaportal.org/.