HP CM8000 HP Color CM8050/CM8060 MFP with Edgeline Technology - Windows XP E - Page 2

Document Attributes

Page 2 highlights

• Incoming email is disabled by default. Even when enabled, email is only processed by the ChaiVM interpreter, so Windows viruses cannot execute. • Web page processing is not supported. Viruses spread by web pages, such as ActiveX control viruses, cannot run because Edgeline never allows web browsing to arbitrary web pages on the network. • There are no known document viruses that would affect Edgeline. These viruses are activated when the document is opened by Word or Excel, which cannot happen on the MFP because it is sent only the print-ready version of the document. • The Host USB connection to Windows XP Embedded is restricted to allow only simple file system and I/O connections. Autorun is disabled, preventing viruses and malware from executing from a USB device. Edgeline is resistant to attack by worms by default and can be configured to be even more resistant. • Jetdirect and the LynxOS firmware provide a firewall between the network and the XP Embedded operating system on Edgeline. • The firewall prevents worms from detecting that Edgeline has Windows XP Embedded installed. Worms that scan the network should ignore Edgeline when they don't detect this Windows "signature". • Almost all Windows protocols are blocked by the firewall and cannot be accessed by a worm attempting to spread via the network. The few protocols that are allowed through the firewall were analyzed for vulnerabilities and hardened to resist attack. • The customer can configure Jetdirect to block all network traffic, except from a secure spooler or other known good host PCs. This prevents worms from being able to make any connection to the MFP. Document Attributes Product Models: CM8050, CM8060 Page 2 of 2 white paper

  • 1
  • 2

Incoming email is disabled by default. Even when enabled, email is only processed by
the ChaiVM interpreter, so Windows viruses cannot execute.
Web page processing is not supported.
Viruses spread by web pages, such as
ActiveX control viruses, cannot run because Edgeline never allows web browsing to
arbitrary web pages on the network.
There are no known document viruses that would affect Edgeline. These viruses are
activated when the document is opened by Word or Excel, which cannot happen on
the MFP because it is sent only the print-ready version of the document.
The Host USB connection to Windows XP Embedded is restricted to allow only simple
file system and I/O connections.
Autorun is disabled, preventing viruses and malware
from executing from a USB device.
Edgeline is resistant to attack by worms by default and can be configured to be even more
resistant.
Jetdirect and the LynxOS firmware provide a firewall between the network and the XP
Embedded operating system on Edgeline.
The firewall prevents worms from detecting that Edgeline has Windows XP Embedded
installed. Worms that scan the network should ignore Edgeline when they don’t detect
this Windows “signature”.
Almost all Windows protocols are blocked by the firewall and cannot be accessed by
a worm attempting to spread via the network. The few protocols that are allowed
through the firewall were analyzed for vulnerabilities and hardened to resist attack.
The customer can configure Jetdirect to block all network traffic, except from a secure
spooler or other known good host PCs. This prevents worms from being able to make
any connection to the MFP.
Document Attributes
Product Models:
CM8050, CM8060
Page 2 of 2
white paper