Ricoh Aficio MP 8001 sec - Page 51

Table 20: List of specifications of Management Functions

Page 51 highlights

Table 20: List of specifications of Management Functions Page 50 of 82 Functional requirements FAU_GEN.1 FAU_SAR.1 FAU_SAR.2 FAU_STG.1 FAU_STG.4 FCS_CKM.1 FCS_COP.1 FDP_ACC.1 FDP_ACF.1 FDP_IFC.1 FDP_IFF.1 FIA_AFL.1 FIA_ATD.1 FIA_SOS.1 Management requirements Management items None a) Maintenance (deletion, modification, addition) of the group of users with read access right to the audit records. None None a) Maintenance (deletion, modification, addition) of actions to be taken in case of audit storage failure. None None None a) Managing the attributes used to make explicit access or denial based decisions. None a) Managing the attributes used to make explicit access based decisions. a) Management of the threshold for unsuccessful authentication attempts. b) Management of actions to be taken in the event of an authentication failure. a) If so indicated in the assignment, the authorised administrator might be able to define additional security attributes for users. a) Management of the metric used to verify the secrets. a) Management of the machine administrator from administrator roles. None: Actions are fixed and not an object of management. a) Management of the file administrator from administrator roles. None: Attributes (data type) used to make explicit access-based decisions are fixed and there are no interfaces to change. a) Security Management Function (management of machine control data): management of the Number of Attempts before Lockout by machine administrator. b) Management of unlocking administrators and Lockout release operations for locked-out users. None: No functions for defining additional security attributes for users. Security Management Function (management of machine control data): The user administrator manages the following settings of the machine control data: - Minimum Password Length - Password Complexity Setting Copyright (c) 2010 RICOH COMPANY, LTD. All Rights Reserved.

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83

Page 50 of 82
Copyright (c) 2010 RICOH COMPANY, LTD. All Rights Reserved.
Table 20: List of specifications of Management Functions
Functional
requirements
Management requirements
Management items
FAU_GEN.1
None
-
FAU_SAR.1
a) Maintenance (deletion, modification,
addition) of the group of users with read
access right to the audit records.
a)
Management
of
the
machine
administrator from administrator roles.
FAU_SAR.2
None
-
FAU_STG.1
None
-
FAU_STG.4
a) Maintenance (deletion, modification,
addition) of actions to be taken in case
of audit storage failure.
None: Actions are fixed and not an object
of management.
FCS_CKM.1
None
-
FCS_COP.1
None
-
FDP_ACC.1
None
-
FDP_ACF.1
a) Managing the attributes used to make
explicit
access
or
denial
based
decisions.
a) Management of the file administrator
from administrator roles.
FDP_IFC.1
None
-
FDP_IFF.1
a) Managing the attributes used to make
explicit access based decisions.
None: Attributes (data type) used to make
explicit access-based decisions are fixed
and there are no interfaces to change.
FIA_AFL.1
a) Management of the threshold for
unsuccessful authentication attempts.
b) Management of actions to be taken in
the event of an authentication failure.
a)
Security
Management
Function
(management of machine control data):
management of the Number of Attempts
before Lockout by machine administrator.
b)
Management
of
unlocking
administrators
and
Lockout
release
operations for locked-out users.
FIA_ATD.1
a) If so indicated in the assignment, the
authorised administrator might be able
to define additional security attributes
for users.
None: No functions for defining additional
security attributes for users.
FIA_SOS.1
a) Management of the metric used to
verify the secrets.
Security
Management
Function
(management of machine control data):
The
user
administrator
manages
the
following settings of the machine control
data:
- Minimum Password Length
- Password Complexity Setting