Kickstarting the Patch Management Extension for CC (ISO/IEC 9569) (S13a)
The ISO project ISO/IEC 9569 Patch Management Extension for ISO/IEC 15408/18045 tries to solve the problem of Update & Patch Management in CC. The extension introduces a general concept which can be augmented to existing and new PPs/STs. The extension includes the definition of a new assurance family (ALC_PAM). This talk gives practical guidance on how to apply the concept when drafting PPs/STs. Additionally, further considerations for TOE developers are discussed. The target audience of this talk are CC experts especially consultants and developers. This talk benefits from practical experience from the first pilot projects carried out in the German CC scheme.