Ricoh C400DN Security Target - Page 63

FMT_MSA.3b, Static attribute initialisation, FMT_MTD.1 Management of TSF data, Table 28 : List - default password

Page 63 highlights

Document data [when document data attributes are (+PRT), (+SCN), (+CPY), (+FAXIN), and (+FAXOUT)] User job Document user list Login user name of normal user - No authorised identified roles - No authorised identified roles Page 62 of 91 FMT_MSA.3(b) Static attribute initialisation Hierarchical to: No other components. Dependencies: FMT_MSA.1 Management of security attributes FMT_SMR.1 Security roles FMT_MSA.3.1(b)The TSF shall enforce the [assignment: TOE function access control SFP] to provide [selection: restrictive] default values for security attributes that are used to enforce the SFP. FMT_MSA.3.2(b)The TSF shall allow the [assignment: no authorised identified roles] to specify alternative initial values to override the default values when an object or information is created. FMT_MTD.1 Management of TSF data Hierarchical to: No other components. Dependencies: FMT_SMR.1 Security roles FMT_SMF.1 Specification of Management Functions FMT_MTD.1.1 The TSF shall restrict the ability to [selection: query, modify, delete, [assignment: newly create]] the [assignment: list of TSF data in Table 28] to [assignment: the user roles in Table 28]. Table 28 : List of TSF Data TSF Data Login password of normal user for Basic Authentication Operations Newly create, modify Modify Login password of supervisor Login password of MFP administrator Modify Modify Newly create Modify Number of Attempts before Lockout for Basic Authentication Query User Roles MFP administrator Normal user who owns the login password Supervisor Supervisor MFP administrator MFP administrator who owns the login password MFP administrator Copyright (c) 2012 RICOH COMPANY, LTD. All rights reserved.

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92

Page 62 of
91
Copyright (c) 2012 RICOH COMPANY, LTD. All rights reserved.
Document data
[when document
data attributes are
(+PRT), (+SCN),
(+CPY),
(+FAXIN), and
(+FAXOUT)]
Document user
list
- No authorised identified roles
User job
Login user name
of normal user
- No authorised identified roles
FMT_MSA.3(b)
Static attribute initialisation
Hierarchical to:
No other components.
Dependencies:
FMT_MSA.1 Management of security attributes
FMT_SMR.1 Security roles
FMT_MSA.3.1(b)The TSF shall enforce the
[assignment: TOE function access control SFP]
to provide
[selection: restrictive]
default values for security attributes that are used to enforce the SFP.
FMT_MSA.3.2(b) The TSF shall allow the
[assignment: no authorised identified roles]
to specify alternative
initial values to override the default values when an object or information is created.
FMT_MTD.1 Management of TSF data
Hierarchical to:
No other components.
Dependencies:
FMT_SMR.1 Security roles
FMT_SMF.1 Specification of Management Functions
FMT_MTD.1.1
The TSF shall restrict the ability to
[selection: query, modify, delete, [assignment: newly
create]]
the
[assignment: list of TSF data in Table 28]
to
[assignment: the user roles in
Table 28]
.
Table 28 : List of TSF Data
TSF Data
Operations
User Roles
Newly create, modify
MFP administrator
Login password of normal user
for Basic Authentication
Modify
Normal user who owns the login
password
Login password of supervisor
Modify
Supervisor
Modify
Supervisor
Newly create
MFP administrator
Login password of MFP
administrator
Modify
MFP administrator who owns the
login password
Number of Attempts before
Lockout for Basic
Authentication
Query
MFP administrator