Ricoh Aficio MP 3350B Security Target - Page 49

assignment: List of TSF Data Management

Page 49 highlights

Page 49 of 83 Security attributes General User Information) Operations Document Data User roles 㩷 FMT_MSA.3 Static attribute initialisation Hierarchical to: No other components. Dependencies: FMT_MSA.1 Management of security attributes FMT_SMR.1 Security roles. FMT_MSA.3.1 The TSF shall enforce the [assignment: MFP access control SFP] to provide default values [selection: specified as shown in Table 18] for security attributes that are used to enforce the SFP. FMT_MSA.3.2 The TSF shall allow the [assignment: no authorised identified roles] to specify alternative initial values to override the default values when an object or information is created. Table 18: Characteristics of Static Attribute Initialisation Object Document Data stored by General Users Security attribute associated to object Document Data ACL Default value and its characteristic at time of object creation A value set in advance as the Document Data Default ACL for the applicable General User (Document File Owner). This value can be set arbitrarily by the User Administrator or the General User, and it has neither the restrictive nor permissive property but the specified property. FMT_MTD.1 Management of TSF data Hierarchical to: No other components. Dependencies: FMT_SMR.1 Security roles FMT_SMF.1 Specification of Management Functions. FMT_MTD.1.1 The TSF shall restrict the ability to [selection: query, modify, delete, [assignment: register, change, entirely delete, newly create]] the [assignment: List of TSF Data Management in Table 19] to [assignment: roles in Table 19]. Table 19: List of TSF Data Management TSF data Authentication information of General Users (a data item of General User Information) Operations Newly create, change, delete User roles User Administrator Copyright (c) 2009,2010 RICOH COMPANY, LTD. All Rights Reserved.

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83

Page 49 of 83
Security attributes
Operations
User roles
General User Information)
Document Data
FMT_MSA.3
Static attribute initialisation
Hierarchical to:
No other components.
Dependencies:
FMT_MSA.1 Management of security attributes
FMT_SMR.1 Security roles.
FMT_MSA.3.1 The TSF shall enforce the
[assignment: MFP access control SFP]
to provide default values
[selection: specified as shown in
Table 18
]
for security attributes that are used to enforce
the SFP.
FMT_MSA.3.2 The TSF shall allow the
[assignment: no authorised identified roles]
to specify alternative
initial values to override the default values when an object or information is created.
Table 18: Characteristics of Static Attribute Initialisation
Object
Security attribute associated
to object
Default value and its characteristic at
time of object creation
Document Data stored
by General Users
Document Data ACL
A value set in advance as the Document
Data Default ACL for the applicable
General User (Document File Owner).
This value can be set arbitrarily by the
User Administrator or the General User,
and it has neither the restrictive nor
permissive property but the specified
property.
FMT_MTD.1
Management of TSF data
Hierarchical to:
No other components.
Dependencies:
FMT_SMR.1 Security roles
FMT_SMF.1 Specification of Management Functions.
FMT_MTD.1.1 The TSF shall restrict the ability to
[selection: query, modify, delete, [assignment: register,
change, entirely delete, newly create]]
the
[assignment: List of TSF Data Management in
Table 19
]
to
[assignment: roles in
Table 19
]
.
Table 19: List of TSF Data Management
TSF data
Operations
User roles
Authentication
information
of
General Users (a data item of General
User Information)
Newly create,
change,
delete
User Administrator
Copyright (c) 2009,2010 RICOH COMPANY, LTD. All Rights Reserved.