ISO 15408¸ê°T§Þ³N¦w¥þµû¦ô³q¥Î¼Ð·Ç°ò¦½Òµ{
³q¥Î¼Ð·Ç¬O¤@®M°ê»Ú·Ç«h©M³W½d»¡©ú¡A¯à¥Î¨Óµû¦ô¸ê°T¦w¥þ²£«~
|
½Òµ{¤¶²Ð
³q¥Î¼Ð·Ç (CC, Common Criteria for Information Technology Security Evaluation, ISO/IEC 15408)¬O¤@®M°ê»Ú·Ç«h©M³W½d»¡©ú¡A¯à¥Î¨Óµû¦ô¸ê°T¦w¥þ²£«~¡A¯S§O¬O«OÃÒ³o¨Ç²£«~²Å¦X¬F©²³¡¸p©Î²£·~°Ó©wªº¦w¥þ¼Ð·Ç¡C³q¥Î¼Ð·Çªº¥¿¦¡ºÙ¿×¬O¡u¸ê°T§Þ³N¦w¥þµû¦ô³q¥Î¼Ð·Ç¡v¡C
³q¥Î¼Ð·Ç (CC,Common Criteria) ¥]¬A¨â¶µ¥Dn¤º®e¡G«OÅ@½ü¹ø©Mµû¦ô«OÅ@µ¥¯Å¡C«OÅ@½ü¹ø (PP, Protection Profile) ¬°¨ãÅé²£«~³W©w¤@®M¼Ð·Çªº¦w¥þn¨D¡A¦p¨¾¤õÀð¡B´¼¼z¥d¡B´¹¤ùµ¥¡Cµû¦ô«OÅ@µ¥¯Å (EAL, Evaluation Assurance Level) ³W©w²£«~ÀË´úªº¹ý©³µ{«×¡Cµû¦ô«OÅ@µ¥¯Å±q1¯Å¨ì7¯Å¡A1¯Å¬°³Ì§C¯Å§O¡A7¯Å¬°³Ì°ª¯Å§O¡C
´£¥æµû¦ô²£«~¤§«e¡A¨ÑÀ³°Ó (Developer) º¥ýn§¹¦¨¤@¶µ¦w¥þ¥Ø¼Ð (ST, Security Target) ´yz¡A³o¨ä
¤¤©Ò¬A²£«~·§z»P¦w¥þ¯S¼x¡B¼ç¦b¦w¥þ«Â¯Ùµû¦ô©M¨ÑÀ³°Ó¦b¤w¿ïµû¦ô«OÅ@µ¥¯Å (EAL, Evaluation Assurance Level) °ò¦¤W¸Ôz²£«~»P¬ÛÃö«OÅ@½ü¹ø¬Û²Åµ{«×ªº¦Û§Úµû»ù¡C±µµÛ¡A»{¥iÀËÅç«Ç³q¹L®Ö¹ê²£«~¦w¥þ¯S¼x¡Bµû¦ô¥¦»P«OÅ@½ü¹ø (PP, Protection Profile) ³W©w¼Ð·Çªº¬Û²Åµ{«×¨ÓÀË´ú²£«~¡C¿n·¥ªºµû¦ôµ²ªG¬Oºc¦¨²£«~©x¤è»{ÃÒªº°ò¦¡C
³q¥Î¼Ð·Ç (CC,Common Criteria) »{ÃÒªº¥Øªº¡A¬O¦V®ø¶OªÌ«OÃÒ¥LÌÁʶRªº²£«~¤w¸g¸g¹Lµû¦ô¡A©Ò´£
¨Ñªº¦w¥þ¥\¯à¤Î¾÷¨î¤]¤w¸g¹L¤£°¾³R°Ó®aªº¨ó¤O¼t°ÓÃÒ¹ê¡C
¥»½Òµ{¥Dn¨ó§U¨ÑÀ³°ÓÁA¸Ñ¡u¤°»ò(WHAT)¡v¬O³q¥Î¼Ð·Ç¤Î¡u¦p¦ó(HOW)¡v¨Ï¥Î¤Î·Ç³Æ¦w¥þ¥Ø¼Ð (ST, Security Target)¡C¥»½Òµ{±N¨Ï¥Î¨¾¤õÀð©Î´¼¼z¥d¬ÛÃö²£«~§@¬°¼Ë¥»(TOE, Target of Evaluation)¡C
½Òµ{¯S¦â/¥Ø¼Ð
-
«Ø¥ß±zÓ¤H»P¤½¥q¦b³q¥Î¼Ð·ÇÀ³¥Î¤è±ªº±M·~¯à¤O
-
¨ó§U¤½¥q¶¶§Q³q¹L³q¥Î¼Ð·Çµû¦ô»P¨Ã¨ú±o²£«~»{ÃÒ
¥»½Òµ{¬O¾Ç²ß¦p¦ó¨Ï¥Î³q¥Î¼Ð·Çªº¤Jªù½Òµ{¡A¥H¤U¬O¥»½Òµ{ªº¾Ç²ß¥Ø¼Ð¡G
-
ÁA¸Ñ³q¥Î¼Ð·Çªº¥Î³~¡A¥Øªº
-
ÁA¸Ñ³q¥Î¼Ð·Çªºµ²ºc
-
ÁA¸Ñ³q¥Î¼Ð·Ç²Ä¤@〜¤T³¡
-
ÁA¸Ñ¤°»ò¬O«OÅ@½ü¹ø (PP, Protection Profile)
-
ÁA¸Ñ¤°»ò¬O¦w¥þ¥Ø¼Ð (ST, Security Target)
-
ÁA¸Ñ¦p¦ó·Ç³Æ¤@¥÷¦w¥þ¥Ø¼Ð (ST, Security Target)
-
ÁA¸Ñ¤°»ò¬Oµû¦ô«OÅ@µ¥¯Å (EAL, Evaluation Assurance Level)
-
ÁA¸Ñ³q¥Î¼Ð·Ç¹ï¶}µoÀô¹Òn¨D (Site Security, Configuration Management, Change management)
½Òµ{¹ï¶H
-
°Ñ»P¸ê°T¦w¥þ²£«~¡]³nÅé/µwÅé/¶´Åé¡^¶}µo¨Ãn¨D²Å¦X°ê»Ú¼Ð·Çªº¤uµ{®v
-
¸ê°T¦w¥þ²£«~¨ÑÀ³°Ó
-
¸ê°T¦w¥þ²£«~¥Í²£°Ó
-
¸ê°T¦w¥þ²£«~±ÄÁÊ/³W®æ¨î©w¤Hû
ùþ½Òµ{¥²nªº¥ý³Æª¾Ãѯà¤O
-
¥²¶·¨ã³Æ¸ê°T¦w¥þ²£«~¶}µo¬ÛÃö§Þ³N»P¸gÅç
-
¥²¶·¨ã³Æ¨}¦nªº^¤å¾\Ū¯à¤O»P¸gÅç
-
¥²¶·¨ã³Æ§Þ³NÀÉ¡]¨Ò¦p¶}µoªÌÀÉ¡^¼¶¼g¯à¤O»P¸gÅç
-
¥²¶·¨ã³Æ²£«~/¥\¯à´ú¸Õ¯à¤O»P¸gÅç
Á¿®v²¤¶
Á¿®v¬° TSKG»{©w¤§Á¿®v
½Òµ{¤jºõ
½Òµ{³z¹LÁ¿®v±Ð¾Ç¡A¤p²Õ°Q½×¡A®×¨Ò¬ã°Qµ¥¤è¦¡¶i¦æ¡A¥]§t¤U¦C¤º®e¡G
-
³q¥Î¼Ð·Ç¤¶²Ð¡A¤º®e¡A¬[ºc
-
¼Ë¥» (TOE, Target of Evaluation) ¤¶²Ð
-
«OÅ@½ü¹ø (PP, Protection Profile)
-
¦w¥þ¥Ø¼Ð (ST, Security Target)
-
µû¦ô«OÅ@µ¥¯Å (EAL, Evaluation Assurance Level)
-
³q¥Î¼Ð·Ç¶}µoÀô¹Òn¨D (Site Security, Configuration Management, Change management)
- ¦Ò¸Õ
Ø ¤W½Ò´Á¶¡¡A¨C¤Ñ·|¦³½Ò«á§@·~¡A°Ñ»P¾Çû¥²¶·Ó¤H©Î¤p²Õ¦@¦P©ó´Á¤º§¹¦¨¡A§@·~±N§@¬°¤U¤@¶¥¬q¬¡°Êªº¥²n¸ê®Æ¡C
µ²°V»P»{ÃÒ
(¦Ò¸Õ70¤À¥H¤W¤~¦X®æ¡A¦X®æªÌ±N±Â¤© TKSG °ê»Ú»{¥i^¤åÃҮѡA¥¼³q¹L¦Ò¸ÕªÌ½Òµ{µ²§ô«á6Ӥ뤺¦³¤@¦¸§K¶O¸É¦Ò¾÷·|¡AY¥¼¯à³q¹L²Ä¤@¦¸«¦ÒªÌ¡A¥i¦Vì½Òµ{³æ¦ì¥Ó½Ð¶i¦æ°Ñ¥[²Ä¤G¦¸«¦Ò(¸É¦Ò¶O¥Î$2000 ¤¸)
»ù®æ
¨C¤H 60,000 ¤¸
½Ð°Ñ¥[¾Çû¦Û³Æµ§°O«¬¹q¸£(»Ýn¯à¤Wºô)
±`¨£°ÝÃD
¡´Ãº¶O¤è¦¡¡G
«H¥Î¥d¡]½u¤W³ø¦W¡^¡G ú¶O¤è¦¡¿ï¡u«H¥Î¥d¡v¡Aª½¨ìÅã¥Ü¡u±z¤w§¹¦¨³ø¦W¤âÄò¡v¬°¤î¡A¤~½T¹ê§¹¦¨Ãº¶O¡C
ATMÂà±b¡]½u¤W³ø¦W¡^¡Gú¶O¤è¦¡¿ï¾Ü¡uATMÂà±b¡vªÌ¡A¨t²Î±Nµ¹±z¤@²ÕÂà±b±b¸¹¡u»È¦æ¥N¸¹¡BÂà±b±b¸¹¡v¡A¦ý¦¹±b¸¹¥u´£¨Ñ¥»½Òµ{Âà±b¨Ï¥Î, ¦U§O¾ÇûÂà±b½Ð¨Ï¥Î¤£¦PÂà±b±b¸¹¡I¡I
´£¿ô±z¡G½Ð©óú¶O«á¡A±N¡u¦¬¾Ú¡v¼g¤W±zªº¡u¤½¥q¥þ»Î¡B½Òµ{¦WºÙ¡B©m¦W¡BÁpµ¸¹q¸Ü¡v¶Ç¯u¦Ü02-2381-1000©ÎE-mail¦Ü¡Gjia@itri.org.tw ÃC¤p©j ¦¬¡F§Y¥i§¹¦¨³ø¦W¤âÄò¡C
½Ð±q²£·~¾Ç°|¾Ç²ßºôª½±µµn¤J¤u¬ã¤H³ø¦W¡FÚ§Qpµe¥N¸¹¦©´Ú¡C
¶K¤ß´£¿ô
Ø Á|¿ì¤é´Á¡G106/05/22(¤@)~05/26(¤) 09:00 -18:00 ¡]¦@40hrs¡^
Ø Á|¿ì¦aÂI¡G¤u¬ã°|²£·~¾Ç°| ¥x¥_¾Ç²ß¤¤¤ß (¹ê»Ú¦aÂI¥H¤W½Ò³qª¾¬°·Ç!)
Ø ½Òµ{¬¢¸ß¡G(02)2370-1111 ¤À¾÷319 ÃC¤p©j
-----------------------------------------------------------------------------
¡° ¥H¤Uª`·N¨Æ¶µ ¢w ·q½Ð±zªº¨ó§U¡AÁÂÁÂ!
1 µo²¼«¬¦¡¦p¬O¶}¤TÁp¦¡ªº¡A½Ðµù©úªA°È¾÷Ãö¤§§¹¾ã©ïÀY¡A¥H§Q¶}¥ß¦¬¾Ú¡C
2 ¬°½T«O±zªº¤W½ÒÅv¯q¡A³ø¦W«áY¥¼¦¬¨ì¥ô¦ó¦^ÂСA·q½Ð¨Ó¹q¬¢¸ß¤è§¹¦¨³ø¦W¡C
3 ¦]½Ò«e±Ð§÷¡BÁ¿¸q¤ÎÀ\ÂI¤§·Ç³Æ¤Î»Ý¬°±z¶i¦æ°h´Ú¬ÛÃö¨Æ©y¡AY±z¤£§J«e¨Ó¡A½Ð©ó¶}½Ò¤T¤é«e§iª¾¡A¥H§Q¦æ¬F§@·~¶i¦æ¨Ã¦@¦P·RÅ@¸ê·½¡C
4 ¬°´L«Á¿®v¤§´¼¼z°]²£Åv¯q¡A®¤µLªk´£¨Ñ½Òµ{Á¿¸q¹q¤lÀÉ¡C
5 ¬°°t¦XÁ¿®v®É¶¡©ÎÁ{®É¬ðµo¨Æ¥ó¡A¥D¿ì³æ¦ì¦³½Õ¾ã¤é´Á©Î§ó´«Á¿®v¤§Åv§Q¡C
6 ú¶O¤è¦¡¬°«H¥Î¥d¡BATMÂà±b¡A®¤¤£¨ü²z²{³õ³ø¦W©Mú¶O¡C
7 ½Ð¥ý¤£nú¶O¡A¦³½T©w¶}½Ò·|¦A³qª¾Ãº¶O¡Cªþ¥ó
2017052226 ISO 15408¸ê°T§Þ³N¦w¥þµû¦ô³q¥Î¼Ð·Ç°ò¦½Òµ{.pdf