EAL Flashcards
What is EAL?
Evaluation Assurance Levels
What are EALs defined in?
Common Criteria
What is EAL 1?
The product is functionally tested; this is sought when some assurance in accurate operation is necessary, but the threats to security are not seen as serious.
What is EAL 2?
Structurally tested; this is sought when developers or users need a low to moderate level of independently guaranteed security.
What is EAL 3?
Methodically tested and checked; this is sought when there is a need for a moderate level of independently ensured security.
What is EAL 4?
Methodically designed, tested, and reviewed; this is sought when developers or users require a moderate to high level of independently ensured security.
What is EAL 5?
Semiformally designed and tested; this is sought when the requirement is for a high level of independently ensured security.
What is EAL 6?
Semiformally verified, designed, and tested; this is sought when developing specialized TOEs for high-risk situations.
What is EAL 7?
Formally verified, designed, and tested; this is sought when developing a security TOE for application in extremely high-risk situations.