Konica Minolta bizhub 950i bizhub 950i/850i Security Operations User Guide - Page 15

Enhanced security mode

Page 15 highlights

1.4 Enhanced security mode 1 1.4 Enhanced security mode Setting the [Enhanced Security Mode] to [ON] will validate the security function of this machine. For details of the settings of different security functions to be changed by turning [ON] the [Enhanced Security Mode], see page 2-10. 1.4.1 Major security functions in operation under ISO15408 certification The following describes major security functions in operation under ISO15408 certification. Function Identification and authentication function User limiting function Auditing function Network communication protecting function Description Access control is then provided through password authentication for any access to the Administrator Mode, user authentication mode, User Box, and a User Box data file. Access is thereby granted only to the authenticated user. A password that can be set must meet the Password Rules. The machine does not accept setting of an easily decipherable password. For details of the Password Rules, see page 1-17. As an action against a failure in defined certification, if a wrong password is entered, during password authentication, a predetermined number of times (once to three times.) or more set by the administrator, the machine determines that it is unauthorized access through Prohibited Functions, prohibiting any further entry of the password. By prohibiting the password entry operation, the machine prevents unauthorized use or removal of data. The administrator is responsible for resetting the prohibition of the password entry operation. For details, see page 2-23. Specific functions to be used by each user may be limited. For details, see page 2-28. Information including operations performed on the machine and a job history can be stored in the Storage or log server. Setting the job log (audit log) allows an illegal act or inadequate operation performed on the machine to be traced. For details, see page 2-35. Communication data between the machine, client PC, and servers can be encrypted using the IPsec, which prevents information leakage through eavesdropping over the network. For details, see page 2-16. bizhub 950i/850i/AccurioPrint 950i/850i 1-11

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108

bizhub 950i/850i/AccurioPrint 950i/850i
1-11
1.4
Enhanced security mode
1
1.4
Enhanced security mode
Setting the [Enhanced Security Mode] to [ON] will validate the security function of this machine. For details
of the settings of different security functions to be changed by turning [ON] the [Enhanced Security Mode],
see page 2-10.
1.4.1
Major security functions in operation under ISO15408 certification
The following describes major security functions in operation under ISO15408 certification.
Function
Description
Identification and au-
thentication function
Access control is then provided through password authentication for any ac-
cess to the Administrator Mode, user authentication mode, User Box, and a
User Box data file. Access is thereby granted only to the authenticated user.
A password that can be set must meet the Password Rules. The machine
does not accept setting of an easily decipherable password. For details of
the Password Rules, see page 1-17.
As an action against a failure in defined certification, if a wrong password is
entered, during password authentication, a predetermined number of times
(once to three times.) or more set by the administrator, the machine deter-
mines that it is unauthorized access through Prohibited Functions, prohibit-
ing any further entry of the password. By prohibiting the password entry
operation, the machine prevents unauthorized use or removal of data. The
administrator is responsible for resetting the prohibition of the password en-
try operation. For details, see page 2-23.
User limiting function
Specific functions to be used by each user may be limited. For details, see
page 2-28.
Auditing function
Information including operations performed on the machine and a job history
can be stored in the Storage or log server. Setting the job log (audit log) al-
lows an illegal act or inadequate operation performed on the machine to be
traced. For details, see page 2-35.
Network communication
protecting function
Communication data between the machine, client PC, and servers can be
encrypted using the IPsec, which prevents information leakage through
eavesdropping over the network. For details, see page 2-16.