CISSP Study Group/Blog
Help Me Build a Good Reference Guide
Help Me Build a Good Reference Guide

Trusted Computer System Evaluation Criteria (TCSEC) is a US Gov. DoD standard that sets basic requirements for assessing the effectiveness of computer security controls built into a computer system. The TCSEC was used to evaluate, classify and select computer systems being considered for the processing, storage and retrieval of sensitive or classified information.
| TCSEC (Trusted Computer Security Evaluation Criteria – aka Orange Book)
ITSEC (Information Technology Security Evaluation Criteria) |
|||
|
ITSEC / TCSEC |
DESCRIPTION TCSEC / ITSEC (F+E) ITSEC / (E) EAL |
||
| F =
EAL = |
Functionality
Eval Assurance Level |
||
|
(Highest) F6-10 / EAL7
|
F10 |
|
|
|
F9 |
|
||
|
F8 |
|
||
|
F7 |
|
||
|
F6 |
|
||
|
EAL 7 |
|
||
|
A = VERIFIED PROTECTION |
|||
|
A1 / F5 + E6
|
o Classification: Capable of handling TS information. o (Trusted Distribution) – Delivered and installed in a secure manner. o Covert channels addressed – formally tested and documented. |
||
| EAL 6 |
|
||
|
B = MADATORY PROTECTION |
|||
|
B3 / F5 + E5
|
o Classification: Supports sufficient security to house classified data. o (Trusted Recovery) – Secure state must be addressed during initial boot process. o Covert timing channels addressed – for processing trasactions. o Security Admin functions must be clearly identified by System. o Requirement for Security Domains. o Very difficult to successfully attack and provide sufficient secure controls for very sensitive or Secret data. o Compartmented Securiy-Mode of Operation in most cases. |
||
|
EAL 5 |
|
||
|
B2 / F4 + E4
|
o Classification: Supports sufficient security to house classified data. o (Trusted Facility Management) required o Covert storage channels addressed – for data and/or storage devices. o Requires SEPARATE Operator and Administrator ROLES. o Change Control is required. |
||
|
EAL 4 |
|
||
|
B1 / F3 + E3
|
o Classification: Supports sufficient security to house classified data. o Grants access by matching subject and object labels and comparing their permission compatibility. |
||
|
EAL 3 |
|
||
|
C = DISCRETIONARY PROTECTION |
|||
|
C2 / F2 + E2 |
o Enforce strict logon procedures. o Media cleansing. o Auditing mechanisms. o OBJECT REUSE. |
||
|
EAL 2 |
|
||
|
C1 / F1 + E1 |
|
||
|
EAL 1 |
|
||
|
D = MINIMAL SECURITY |
|||
|
D / E0 (Lowest) |
|
||
|
EAL 0 |
|
||