Ricoh Aficio MP 2851 Security Target - Page 49

Functional, requirements, Management requirements, Management items, FDP_ACF.1, FDP_IFC.1, FDP_IFF.1

Page 49 highlights

Functional requirements FDP_ACF.1 FDP_IFC.1 FDP_IFF.1 FIA_AFL.1 FIA_ATD.1 FIA_SOS.1 FIA_UAU.2 Management requirements Management items Page 49 of 81 a) Managing the attributes used to make explicit access or denial based decisions. None a) Managing the attributes used to make explicit access based decisions. a) Management of the threshold for unsuccessful authentication attempts. b) Management of actions to be taken in the event of an authentication failure. a) If so indicated in the assignment, the authorised administrator might be able to define additional security attributes for users. a) Management of the metric used to verify the secrets. a) Management of the authentication data by an administrator, b) Management of the authentication data by the user associated with this data. a) Management of the file administrator from administrator roles. - None: Attributes (data type) used to make explicit access-based decisions are fixed and there are no interfaces to change. a) Security Management Function (management of machine control data): management of the Number of Attempts before Lockout by machine administrator. b) Management of unlocking administrators and Lockout release operations for locked-out users. None: No functions for defining additional security attributes for users. Security Management Function (management of machine control data): The user administrator manages the following settings of the machine control data: - Minimum Password Length - Password Complexity Setting - Security Management Function (management of general user information): management of authentication information of general users by the user administrator and management of own authentication information of general Users. - Security Management Function (management of administrator information): management of own administrator authentication information by administrators. - Security Management Function (management of administrator information): new registration of administrators by administrators. - Security Management Function (management of administrator information): management of administrator authentication information by supervisor. Copyright (c) 2010 RICOH COMPANY, LTD. All Rights Reserved.

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81

Page 49 of 81
Copyright (c) 2010 RICOH COMPANY, LTD. All Rights Reserved.
Functional
requirements
Management requirements
Management items
FDP_ACF.1
a) Managing the attributes used to make
explicit access or denial based
decisions.
a) Management of the file administrator
from administrator roles.
FDP_IFC.1
None
-
FDP_IFF.1
a) Managing the attributes used to make
explicit access based decisions.
None: Attributes (data type) used to make
explicit access-based decisions are fixed
and there are no interfaces to change.
FIA_AFL.1
a) Management of the threshold for
unsuccessful authentication attempts.
b) Management of actions to be taken in
the event of an authentication failure.
a) Security Management Function
(management of machine control data):
management of the Number of Attempts
before Lockout by machine administrator.
b) Management of unlocking
administrators and Lockout release
operations for locked-out users.
FIA_ATD.1
a) If so indicated in the assignment, the
authorised administrator might be able
to define additional security attributes
for users.
None: No functions for defining additional
security attributes for users.
FIA_SOS.1
a) Management of the metric used to
verify the secrets.
Security Management Function
(management of machine control data):
The user administrator manages the
following settings of the machine control
data:
- Minimum Password Length
- Password Complexity Setting
FIA_UAU.2
a) Management of the authentication
data by an administrator,
b) Management of the authentication
data by the user associated with this
data.
- Security Management Function
(management of general user
information): management of
authentication information of general
users by the user administrator and
management of own authentication
information of general Users.
- Security Management Function
(management of administrator
information): management of own
administrator authentication information
by administrators.
- Security Management Function
(management of administrator
information): new registration of
administrators by administrators.
- Security Management Function
(management of administrator
information): management of
administrator authentication information
by supervisor.