Ricoh Aficio SP C820DN Design Guide - Page 57

Protection of Sending Results and Status Information, 3-6 Protection of the Scanner Features - default password

Page 57 highlights

Print Controller Design Guide for Information Security • It is also possible to assign a password to individual documents when scanning them for storage in the Document Server. After this, the document cannot be sent unless the correct password is entered. Additionally, when the Document Lock feature in System Settings is enabled, the MFP will block all access to a document once the password check for that document fails. Only the Document Administrator can enable/disable this setting. 2-3-5 Protection of Sending Results and Status Information • When Basic Authentication is enabled, authenticated users are only able to view the sending results for the jobs that they performed. Results for jobs that other users performed are displayed as asterisks ("***"), preventing any leakage of information to third parties. The information is hidden in this way when displayed on the LCD, as well as when the results report is printed out. When Basic Authentication is enabled, entries in the sending results report can only be deleted by the user who performed the particular job. This prevents operations from being performed on these entries by third parties. • Even when all of the above restrictions are enabled, Machine Administrators have Full-Access privileges for all log entries. Machine Administrators are able to view and print out all entries. • By default, the sending results log is automatically printed out when the maximum number of entries has been reached. It is possible to disable the automatic printing out of this log in Scanner Features, which ensures that the information on the log is not leaked to unauthorized third parties, and also allows administrators to keep a record of every transmission job performed. However, when the log reaches the maximum number of entries (with this setting disabled), the MFP displays an alert message to this effect and gives the Machine Administrator the option of printing out the log. 2-3-6 Protection of the Scanner Features Settings • When User Authentication or Administrator Authentication is enabled, users and administrators must be authenticated before they are allowed to make any changes to the settings in Scanner Features. When Machine Administrator Authentication is enabled and the Menu Protect setting is set to "Level 2", changes to the Scanner Features settings can only be performed by the Machine Administrator. With a setting of "Level 1", users are able to update the delivery server destination list as well as change the file compression and e-mail display language settings (System Settings). With a setting of "None", users are able to change all items in Scanner Features. • As explained above, the e-mail forwarding feature sends data from the MFP to external destinations via the network. By changing the network traffic-related settings, which can only be performed by Network Administrators, it is possible to prohibit or limit the conditions under which e-mails from the Page 57 of 86

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86

Print Controller Design Guide for Information Security
Page 57 of 86
It is also possible to assign a password to individual documents when scanning them for storage in the
Document Server. After this, the document cannot be sent unless the correct password is entered.
Additionally, when the Document Lock feature in System Settings is enabled, the MFP will block all
access to a document once the password check for that document fails. Only the Document
Administrator can enable/disable this setting.
2-3-5 Protection of Sending Results and Status Information
When Basic Authentication is enabled, authenticated users are only able to view the sending results
for the jobs that they performed. Results for jobs that other users performed are displayed as asterisks
(“***”), preventing any leakage of information to third parties. The information is hidden in this way
when displayed on the LCD, as well as when the results report is printed out. When Basic
Authentication is enabled, entries in the sending results report can only be deleted by the user who
performed the particular job. This prevents operations from being performed on these entries by third
parties.
Even when all of the above restrictions are enabled, Machine Administrators have Full-Access
privileges for all log entries. Machine Administrators are able to view and print out all entries.
By default, the sending results log is automatically printed out when the maximum number of entries
has been reached. It is possible to disable the automatic printing out of this log in Scanner Features,
which ensures that the information on the log is not leaked to unauthorized third parties, and also
allows administrators to keep a record of every transmission job performed. However, when the log
reaches the maximum number of entries (with this setting disabled), the MFP displays an alert
message to this effect and gives the Machine Administrator the option of printing out the log.
2-3-6 Protection of the Scanner Features Settings
When User Authentication or Administrator Authentication is enabled, users and administrators must
be authenticated before they are allowed to make any changes to the settings in Scanner Features.
When Machine Administrator Authentication is enabled and the Menu Protect setting is set to “Level
2”, changes to the Scanner Features settings can only be performed by the Machine Administrator.
With a setting of “Level 1”, users are able to update the delivery server destination list as well as
change the file compression and e-mail display language settings (System Settings). With a setting of
“None”, users are able to change all items in Scanner Features.
As explained above, the e-mail forwarding feature sends data from the MFP to external destinations
via the network. By changing the network traffic-related settings, which can only be performed by
Network Administrators, it is possible to prohibit or limit the conditions under which e-mails from the