Ricoh Aficio MP 6001 SP Security Target - Page 59

Table 30: Authorised Identified Roles Allowed to Override Default Values

Page 59 highlights

Page 58 of 87 Table 30: Authorised Identified Roles Allowed to Override Default Values Object User document User document (when its document type is any of the following: Document Server user document, scanner user document, or fax document) User document (received fax document) User job Security Attributes Type of document Document user list Document user list Login user name of normal user Authorised Identified Role - No authorised identified roles - MFP administrator - Normal user who stored the applicable user document - No authorised identified roles - No authorised identified roles FMT_MSA.3(b) Static attribute initialisation Hierarchical to: No other components. Dependencies: FMT_MSA.1 Management of security attributes FMT_SMR.1 Security roles FMT_MSA.3.1(b)The TSF shall enforce the [assignment: TOE function access control SFP] to provide [selection: [assignment: the permissive to the available function list, restrictive to the function type]] default values for security attributes that are used to enforce the SFP. FMT_MSA.3.2(b)The TSF shall allow the [assignment: MFP administrator for the available function list, no authorised identified roles for the function type] to specify alternative initial values to override the default values when an object or information is created. FMT_MTD.1 Management of TSF data Hierarchical to: No other components. Dependencies: FMT_SMR.1 Security roles FMT_SMF.1 Specification of Management Functions FMT_MTD.1.1 The TSF shall restrict the ability to [selection: query, modify, delete, [assignment: newly create]] the [assignment: list of TSF data in Table 31] to [assignment: the user roles in Table 31]. Copyright (c) 2011 RICOH COMPANY, LTD. All rights reserved.

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88

Page 58 of
87
Table 30: Authorised Identified Roles Allowed to Override Default Values
Object
Security
Attributes
Authorised Identified Role
User document
Type of document
- No authorised identified roles
User document
(when
its
document type is
any
of
the
following:
Document Server
user
document,
scanner
user
document, or fax
document)
Document
user
list
- MFP administrator
- Normal user who stored the applicable user document
User document
(received
fax
document)
Document
user
list
- No authorised identified roles
User job
Login user name
of normal user
- No authorised identified roles
FMT_MSA.3(b)
Static attribute initialisation
Hierarchical to:
No other components.
Dependencies:
FMT_MSA.1 Management of security attributes
FMT_SMR.1 Security roles
FMT_MSA.3.1(b)The TSF shall enforce the
[assignment: TOE function access control SFP]
to provide
[selection: [assignment: the permissive to the available function list, restrictive to the
function type]]
default values for security attributes that are used to enforce the SFP.
FMT_MSA.3.2(b) The TSF shall allow the
[assignment: MFP administrator for the available function list, no
authorised identified roles for the function type]
to specify alternative initial values to
override the default values when an object or information is created.
FMT_MTD.1 Management of TSF data
Hierarchical to:
No other components.
Dependencies:
FMT_SMR.1 Security roles
FMT_SMF.1 Specification of Management Functions
FMT_MTD.1.1
The TSF shall restrict the ability to
[selection: query, modify, delete, [assignment: newly
create]]
the
[assignment: list of TSF data in Table 31]
to
[assignment: the user roles in
Table 31]
.
Copyright (c) 2011 RICOH COMPANY, LTD. All rights reserved.