Ricoh Aficio MP 6001 SP Security Target - Page 81

FMT_MSA.1a Management of security attributes, Table 40: Security Attributes Management of Common

Page 81 highlights

Page 80 of 87 The TOE also allows creating up to four new MFP administrators, and deleting the MFP administrators. An MFP administrator cannot be deleted if the MFP administrator is assigned to no other persons. FMT_MSA.1(a) (Management of security attributes) The TOE allows only specified users to operate the security attributes related to the common access control SFP from the specified operation interfaces. The operations (newly create, query, modify and delete) are available only on the security attributes that can be operated by the users. Table 40 shows the list of security attributes that can be operated by the users, the permitted users to operate each security attribute and their permitted operations, and the available operation interfaces. Table 40: Security Attributes Management of Common Access Control SFP Security Attribute Login user name of normal user Application type Login user name of supervisor Login user name of MFP administrator Document type Document user list of user documents including the following document types: Document Server user document, scanner user document and fax document. Document user list of user documents including received fax documents. (*1) Operation Interface Operation Panel Web browser No operation interfaces available Operation Panel Web browser Operation Panel Web browser No operation interfaces available Operation Newly create, query, modify, delete Query No operations permitted Query, modify Newly create Query, modify Query No operations permitted User MFP administrator Normal user who owns the applicable login user name - Supervisor MFP administrator MFP administrator who owns the applicable login user name Supervisor - Operation Panel Web browser Query, modify MFP administrator, applicable normal user who stored the document Operation Panel Web browser Query, modify MFP administrator -: No user roles are permitted for operations by the TOE. Copyright (c) 2011 RICOH COMPANY, LTD. All rights reserved.

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88

Page 80 of
87
The TOE also allows creating up to four new MFP administrators, and deleting the MFP administrators. An
MFP administrator cannot be deleted if the MFP administrator is assigned to no other persons.
FMT_MSA.1(a) (Management of security attributes)
The TOE allows only specified users to operate the security attributes related to the common access control
SFP from the specified operation interfaces. The operations (newly create, query, modify and delete) are
available only on the security attributes that can be operated by the users.
Table 40 shows the list of security attributes that can be operated by the users, the permitted users to operate
each security attribute and their permitted operations, and the available operation interfaces.
Table 40: Security Attributes Management of Common Access Control SFP
Security Attribute
Operation
Operation
User
Interface
Newly create,
query,
modify,
delete
MFP administrator
Operation Panel
Web browser
Login user name of normal user
Normal user who owns
the
applicable
login
user name
Query
No
operation
interfaces
available
No operations
permitted
Application type
-
Operation Panel
Web browser
Query,
modify
Login user name of supervisor
Supervisor
Newly create
MFP administrator
MFP administrator who
owns
the
applicable
login user name
Query,
modify
Operation Panel
Web browser
Login user name of MFP administrator
Query
Supervisor
No
operation
interfaces
available
No operations
permitted
Document type
-
Document user list of user documents
including the following document types:
Document
Server
user
document,
scanner
user
document
and
fax
document.
MFP administrator,
Operation Panel
Web browser
Query,
modify
applicable normal user
who
stored
the
document
Document user list of user documents
including received fax documents. (*1)
Operation Panel
Web browser
Query,
modify
MFP administrator
-: No user roles are permitted for operations by the TOE.
Copyright (c) 2011 RICOH COMPANY, LTD. All rights reserved.