Ricoh Aficio MP 6001 SP Security Target - Page 79

FIA_UAU.1 Timing of authentication

Page 79 highlights

Page 78 of 87 (1) Usable characters and its types: Upper-case letters: [A-Z] (26 letters) Lower-case letters: [a-z] (26 letters) Numbers: [0-9] (10 digits) Symbols: SP (space 33 symbols) (2) Registrable password length: - Normal users No fewer than the Minimum Password Length specified by MFP administrator (8-32 characters) and no more than 128 characters. - MFP administrators and a supervisor No fewer than the Minimum Password Length specified by MFP administrator (8-32 characters) and no more than 32 characters. (3) Rule: Passwords that are composed of a combination of characters based on the Password Complexity Setting specified by MFP administrator can be registered. The MFP administrator specifies either Level 1 or Level 2 for Password Complexity Setting. FIA_UAU.1 (Timing of authentication) The TOE displays a window on the Operation Panel when no users log in from the Operation Panel. This window requires the users to enter their login user name and password. The TOE displays a window in a Web browser when the Web Function of the TOE is accessed from a client computer. This window also requires the users to enter their login user name and password. In both windows, the TOE authenticates users with the login user name and password entered by them. When receiving a request from a client computer for printing or storing user documents using Printer Function, the TOE authenticates users with the login user name and password sent from a client computer before printing and storing the user documents. When receiving a request from a client computer for sending and storing user documents using LAN Fax, the TOE authenticates users with the login user name and password sent from a client computer before sending and storing the user documents. When receiving faxes from telephone line, the TOE does not have the function to authenticate users prior to the function that stores the received data as received fax document. The TOE does not receive any authentication information from telephone line, but executes the fax reception function using the received data. The TOE allows any users to refer Web Image Monitor Help regardless of the user authentication status when users access to a Web browser from client computer. The TOE allows the following operations regardless of the user authentication status: reference of the list of user jobs, Web Image Monitor Help from a Web browser, system status, counter, and information of inquiries, and execution of fax reception. Table 39 shows the identified user by Identification and Authentication Function, and authentication procedures. Copyright (c) 2011 RICOH COMPANY, LTD. All rights reserved.

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88

Page 78 of
87
(1)
Usable characters and its types:
Upper-case letters: [A-Z] (26 letters)
Lower-case letters: [a-z] (26 letters)
Numbers: [0-9] (10 digits)
Symbols: SP (space) ! " # $ % & ' ( ) * + , - . / : ; < = > ? @ [ \ ] ^ _ ` { | } ~ (33 symbols)
(2)
Registrable password length:
- Normal users
No fewer than the Minimum Password Length specified by MFP administrator (8-32 characters) and no
more than 128 characters.
- MFP administrators and a supervisor
No fewer than the Minimum Password Length specified by MFP administrator (8-32 characters) and no
more than 32 characters.
(3)
Rule:
Passwords that are composed of a combination of characters based on the Password Complexity Setting
specified by MFP administrator can be registered. The MFP administrator specifies either Level 1 or
Level 2 for Password Complexity Setting.
FIA_UAU.1 (Timing of authentication)
The TOE displays a window on the Operation Panel when no users log in from the Operation Panel. This
window requires the users to enter their login user name and password. The TOE displays a window in a
Web browser when the Web Function of the TOE is accessed from a client computer. This window also
requires the users to enter their login user name and password. In both windows, the TOE authenticates users
with the login user name and password entered by them.
When receiving a request from a client computer for printing or storing user documents using Printer
Function, the TOE authenticates users with the login user name and password sent from a client computer
before printing and storing the user documents. When receiving a request from a client computer for sending
and storing user documents using LAN Fax, the TOE authenticates users with the login user name and
password sent from a client computer before sending and storing the user documents.
When receiving faxes from telephone line, the TOE does not have the function to authenticate users prior to
the function that stores the received data as received fax document. The TOE does not receive any
authentication information from telephone line, but executes the fax reception function using the received
data.
The TOE allows any users to refer Web Image Monitor Help regardless of the user authentication status
when users access to a Web browser from client computer.
The TOE allows the following operations regardless of the user authentication status: reference of the list of
user jobs, Web Image Monitor Help from a Web browser, system status, counter, and information of
inquiries, and execution of fax reception.
Table 39 shows the identified user by Identification and Authentication Function, and authentication
procedures.
Copyright (c) 2011 RICOH COMPANY, LTD. All rights reserved.