Ricoh Aficio MP 3350B Security Target - Page 23

Document Data Access Control Function, Stored Data Protection Function, Network Communication Data

Page 23 highlights

Page 23 of 83 Document Data Access Control Function The Document Data Access Control Function is used to allow only the specific users to perform the operations on the Document Data stored in D-BOX. The operations on Document Data include the reading operation and deleting operation. Each of these operations is as follows: Reading Document Data: Read Document Data stored in D-BOX. Deleting Document Data: Delete Document Data stored in D-BOX. The File Administrator and General Users are the specific users the TOE allows to perform the operations on Document Data. The File Administrator is allowed to delete any Document Data. General Users are allowed to perform only the operations authorised by the operation permission on Document Data. The operation permission on Document Data includes Read-only, Edit, Edit/Delete, Full Control. Among these, the operation permission on Document Data for Edit operation is same as the Read-only operation, and updating the Print Settings is also permitted. Table 3 shows the relation between the operation permissions on Document Data and the operations on Document Data. Table 3: Correspondence Table for Operation Permissions on Document Data and Operations on Document Data Reading Document Data Deleting Document Data Operations on Document Data Operation Permissions On Document Data Read-only X Edit X Edit/Delete X X Full Control X X X: Granted permission to operate, Blank: Not granted permission to operate The operation permission on each Document Data can be set for each General User. Stored Data Protection Function The Stored Data Protection Function is used to protect Document Data recorded on HDD from leakage by making it difficult to understand unless the Document Data is accessed and read in the normal way. Network Communication Data Protection Function The Network Communication Data Protection Function is used to protect Document Data and Print Data on networks from unauthorised access. The communication protocol that is used to protect the communication data differs according to the transmission methods for Document Data or Print Data. The relation between the transmission methods and protection measures is described below. Copyright (c) 2009,2010 RICOH COMPANY, LTD. All Rights Reserved.

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83

Page 23 of 83
Document Data Access Control Function
The Document Data Access Control Function is used to allow only the specific users to perform the
operations on the Document Data stored in D-BOX.
The operations on Document Data include the reading operation and deleting operation. Each of these
operations is as follows:
Reading Document Data: Read Document Data stored in D-BOX.
Deleting Document Data: Delete Document Data stored in D-BOX.
The File Administrator and General Users are the specific users the TOE allows to perform the operations on
Document Data.
The File Administrator is allowed to delete any Document Data.
General Users are allowed to perform only the operations authorised by the operation permission on
Document Data. The operation permission on Document Data includes Read-only, Edit, Edit/Delete, Full
Control. Among these, the operation permission on Document Data for Edit operation is same as the
Read-only operation, and updating the Print Settings is also permitted. Table 3 shows the relation between
the operation permissions on Document Data and the operations on Document Data.
Table 3: Correspondence Table for Operation Permissions on Document Data and Operations on
Document Data
Operations on
Document
Data
Operation
Permissions
On
Document Data
Reading Document
Data
Deleting Document
Data
Read-only
X
Edit
X
Edit/Delete
X
X
Full Control
X
X
X: Granted permission to operate, Blank: Not granted permission to operate
The operation permission on each Document Data can be set for each General User.
Stored Data Protection Function
The Stored Data Protection Function is used to protect Document Data recorded on HDD from leakage by
making it difficult to understand unless the Document Data is accessed and read in the normal way.
Network Communication Data Protection Function
The Network Communication Data Protection Function is used to protect Document Data and Print Data on
networks from unauthorised access. The communication protocol that is used to protect the communication
data differs according to the transmission methods for Document Data or Print Data. The relation between
the transmission methods and protection measures is described below.
Copyright (c) 2009,2010 RICOH COMPANY, LTD. All Rights Reserved.