
Security Target Version 1.02, 08/16/2013
2.2 TOE Architecture
The HP Network switches share a common software code base, called Comware. Comware is special purpose
appliance system software that implements a wide array of networking technology, including: IPv4/IPv6 dual-
stacks, a data link layer, layer 2 and 3 routing, Ethernet switching, VLANs, Intelligent Resilient Framework (IRF),
routing, Quality of Service (QoS), etc. The evaluated version of Comware is 5.2. Comware runs on a variety of
underlying architectures including VxWorks, Linux, pSOS and Windows; however, the only underlying architecture
found in the evaluated configuration is Linux.
The Comware v5.2 architecture can be depicted as follows:
Comware V5 Architechture
SCP GCP
DFP
SSP
SMP
DRIVERS & BSP
HARDWARE
Figure 1 Comware v5.2 Architecture
General Control Plane (GCP) – The GCP fully supports the IPv4 and IPv6 protocol stacks and provides
support to a variety of IPv4/IPv6 applications including routing protocols, voice, WAN link features, and
QoS features.
Service Control Plane (SCP) – The SCP supports value-added services such as connection control, user
policy management AAA, RADIUS, and TACACS+.
Data Forwarding Plane (DFP) – The DFP underpins all network data processing. The forwarding engine
is the core of the DFP.
System Management Plane (SMP) – The SMP provides user interfaces for device management. This
includes implementations for Command line - CLI (SSHv2) and Management Information Base -
management options. The Management Information Base management option is excluded from the TOE.
System Service Plane (SSP) – The SSP provides a foundation layer that implements primitives on which
the other planes rely, for example, memory management, task management, timer management, message
Kommentare zu diesen Handbüchern