Ricoh Aficio SP C821DNT1 Design Guide - Page 35

Job/Access Logs

Page 35 highlights

Print Controller Design Guide for Information Security 1-8 Job/Access Logs Job logs and access logs for the principal machine functions in sections 2.1-2.7 contain entries for job status-related events (initiation, completion, any changes during the job), while the access log contains entries for MFP/LP operational events (authentication, operations performed on documents, administrator operations). Therefore, not every single operational or status-related event is recorded in the log. Each log entry is saved together with the date and time that the event occurred or operation was performed. By saving the data in this way, it is possible to then retrace the sequence of operations performed leading up to a machine failure. In addition, making it known that the time and date are recorded together with the operations can serve as a deterrent to unauthorized use. The specific events/data for which log entries are created vary slightly with each principal machine function. The events/data common to all principal machine functions are: SMC printout, log-in, log-out, storage or deletion of a file in the Document Server (MFP HDD), deletion of all Document Server documents in a single operation, HDD format, deletion of all log entries in a single operation, and changes to log settings. For the events/data that are unique to each principal machine function, please refer to sections 2.1-2.6 below. It is then possible to have the MFP/LP send the log data to Web SmartDeviceMonitor Professional IS (a log data server utility) whenever any of the events described above occurs, after which the data is stored in an MSDE or SQL Server database. Only users who are registered with an Administrator-level user account in Web SmartDeviceMonitor Professional IS can access the contents from a Web SmartDeviceMonitor Professional IS client station. In addition, these administrators are the only persons who can perform any changes to the log data transfer settings. The log data is encrypted before being saved to the HDD, which prevents any illegal acquisition or alteration of the data through unauthorized access to the HDD. In addition, the encrypted data is sent to Web SmartDeviceMonitor Professional IS over an SSL connection. Before log data can be transferred from the MFP/LP to Web SmartDeviceMonitor Professional IS, it is necessary to assign MFP/LP administrator types 1-4 described in section 1.5 Administrator Settings to a single account, and then create an Administrator-level access account in Web SmartDeviceMonitor Professional IS with the same name and password. It is also necessary to enable the settings for log data sending in the MFP/LP and in Web SmartDeviceMonitor Professional IS. Note: For more information on the transfer of this data, please refer to 2.5 Netfile. Page 35 of 86

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86

Print Controller Design Guide for Information Security
Page 35 of 86
1-8
Job/Access Logs
°
Job logs and access logs for the principal machine functions in sections 2.1-2.7 contain entries for job
status-related events (initiation, completion, any changes during the job), while the access log contains
entries for MFP/LP operational events (authentication, operations performed on documents,
administrator operations). Therefore, not every single operational or status-related event is recorded in
the log.
°
Each log entry is saved together with the date and time that the event occurred or operation was
performed. By saving the data in this way, it is possible to then retrace the sequence of operations
performed leading up to a machine failure. In addition, making it known that the time and date are
recorded together with the operations can serve as a deterrent to unauthorized use.
°
The specific events/data for which log entries are created vary slightly with each principal machine
function. The events/data common to all principal machine functions are: SMC printout, log-in, log-out,
storage or deletion of a file in the Document Server (MFP HDD), deletion of all Document Server
documents in a single operation, HDD format, deletion of all log entries in a single operation, and
changes to log settings. For the events/data that are unique to each principal machine function, please
refer to sections 2.1-2.6 below.
°
It is then possible to have the MFP/LP send the log data to Web SmartDeviceMonitor Professional IS
(a log data server utility) whenever any of the events described above occurs, after which the data is
stored in an MSDE or SQL Server database. Only users who are registered with an Administrator-level
user account in Web SmartDeviceMonitor Professional IS can access the contents from a Web
SmartDeviceMonitor Professional IS client station. In addition, these administrators are the only
persons who can perform any changes to the log data transfer settings.
The log data is encrypted before being saved to the HDD, which prevents any illegal acquisition or
alteration of the data through unauthorized access to the HDD. In addition, the encrypted data is sent
to Web SmartDeviceMonitor Professional IS over an SSL connection.
°
Before log data can be transferred from the MFP/LP to Web SmartDeviceMonitor Professional IS, it is
necessary to assign MFP/LP administrator types 1-4 described in section 1.5 Administrator Settings
to
a single account, and then create an Administrator-level access account in Web SmartDeviceMonitor
Professional IS with the same name and password. It is also necessary to enable the settings for log
data sending in the MFP/LP and in Web SmartDeviceMonitor Professional IS.
Note:
For more information on the transfer of this data, please refer to 2.5 Netfile
.