|
|
|
|
|
|
|
|
|
|
|
¨ |
Two
kinds of requirements documentation
|
|
¨ |
Abstract
– Protection Profile
|
|
|
|
– |
System
context, specific functions, general
|
|
|
assurances
|
|
|
|
– |
No
binding to specific implementation
|
|
|
¨ |
Specific
– Security Target
|
|
|
|
– |
System
context, specific functions, specific
|
|
|
assurances
|
|
|
|
– |
Bound
to specific implementation
|
|