Hubbry Logo
Controlled Access Protection ProfileControlled Access Protection ProfileMain
Open search
Controlled Access Protection Profile
Community hub
Controlled Access Protection Profile
logo
7 pages, 0 posts
0 subscribers
Be the first to start a discussion here.
Be the first to start a discussion here.
Controlled Access Protection Profile
from Wikipedia

The Controlled Access Protection Profile, also known as CAPP, is a Common Criteria security profile by the Information Systems Security Organization (ISSO) that specifies a set of functional and assurance requirements for information technology products. Software and systems that conform to CAPP standards provide access controls that are capable of enforcing access limitations on individual users and data objects. CAPP-conformant products also provide an audit capability which records the security-relevant events which occur within the system.[1]

CAPP is intended for the protection of software and systems where users are assumed to be non-hostile and well-managed, requiring protection primarily against threats of inadvertent or casual attempts to breach the security protections. It is not intended to be applicable to circumstances in which protection is required against determined attempts by hostile and well-funded attackers.[1] It does not fully address the threats posed by malicious system development or administrative personnel, who generally have a higher level of access.[citation needed] The CAPP was derived from the requirements of the C2 class of the U.S. Department of Defense standard of Trusted Computer System Evaluation Criteria and the material upon which those requirements are based.[1]

References

[edit]
Revisions and contributorsEdit on WikipediaRead on Wikipedia
Add your contribution
Related Hubs
User Avatar
No comments yet.