Ricoh Aficio MP 3350B Security Target - Page 74

Operations on Administrator, Information, Authorised operators, Operations on General User

Page 74 highlights

Operations on Administrator Information Authentication Information Add and query Administrator Roles Delete Administrator Roles Authorised operators Page 74 of 83 The Administrators who are already assigned that Administrator Role The Administrators who are already assigned that Administrator Role However, the operation cannot be performed if no other Administrators have the Administrator Role. If the login user is the Administrator or Supervisor, the TOE allows the Administrator/Supervisor to perform the operations shown in Table 31, respectively. From the above, FIA_USB.1 (User-subject binding), FMT_MSA.1 (Management of security attributes), FMT_MTD.1 (Management of TSF data), FMT_SMF.1 (Specification of Management Functions) and FMT_SMR.1 (Security roles) are accomplished. 7.1.4.3 Management of Supervisor Information Management of Supervisor Information allows only the Supervisor to query and change Supervisor ID, and to change Supervisor authentication information from the Operation Panel or Web Service Function. If the login user from the Operation Panel or client PC is the Supervisor, the TOE allows the Supervisor to query and change Supervisor ID and to change Supervisor authentication information. From the above, FMT_MSA.1 (Management of security attributes), FMT_MTD.1 (Management of TSF data), FMT_SMF.1 (Specification of Management Function) and FMT_SMR.1 (Security roles) are accomplished. 7.1.4.4 Management of General User Information Management of General User Information allows the specific users to perform the all or some of operations to newly create, change and delete General User Information from the Operation Panel or Web Service Function and General User Information includes the General User IDs, authentication information of General Users, Document Data Default ACL and S/MIME User Information. If the login user from the Operation Panel or Web Service Function is the User Administrator or General User, the TOE allows the User Administrator/General User to perform the operations shown in Table 32. Table 32: Authorised Operations on General User Information Operations on General User Information Newly Create General User Information for Address Book (General User ID, authentication information of General Users and S/MIME User Information) Edit General User Information registered for Address Book (Authentication information of General Users, Document Authorised operators User Administrator User Administrator The General User themselves Copyright (c) 2009,2010 RICOH COMPANY, LTD. All Rights Reserved.

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83

Page 74 of 83
Operations on Administrator
Information
Authorised operators
Authentication Information
Add
and
query
Administrator
Roles
The Administrators who are already assigned that Administrator
Role
Delete Administrator Roles
The Administrators who are already assigned that Administrator
Role
However, the operation cannot be performed if no other
Administrators have the Administrator Role.
If the login user is the Administrator or Supervisor, the TOE allows the Administrator/Supervisor to perform
the operations shown in Table 31, respectively.
From the above, FIA_USB.1 (User-subject binding), FMT_MSA.1 (Management of security attributes),
FMT_MTD.1 (Management of TSF data), FMT_SMF.1 (Specification of Management Functions) and
FMT_SMR.1 (Security roles) are accomplished.
7.1.4.3
Management of Supervisor Information
Management of Supervisor Information allows only the Supervisor to query and change Supervisor ID, and
to change Supervisor authentication information from the Operation Panel or Web Service Function.
If the login user from the Operation Panel or client PC is the Supervisor, the TOE allows the Supervisor to
query and change Supervisor ID and to change Supervisor authentication information.
From the above, FMT_MSA.1 (Management of security attributes), FMT_MTD.1 (Management of TSF
data), FMT_SMF.1 (Specification of Management Function) and FMT_SMR.1 (Security roles) are
accomplished.
7.1.4.4
Management of General User Information
Management of General User Information allows the specific users to perform the all or some of operations
to newly create, change and delete General User Information from the Operation Panel or Web Service
Function and General User Information includes the General User IDs, authentication information of General
Users, Document Data Default ACL and S/MIME User Information.
If the login user from the Operation Panel or Web Service Function is the User Administrator or General
User, the TOE allows the User Administrator/General User to perform the operations shown in Table 32.
Table 32: Authorised Operations on General User Information
Operations on General User Information
Authorised operators
Newly Create General User Information for Address Book
(General User ID, authentication information of General
Users and S/MIME User Information)
User Administrator
Edit General User Information registered for Address
Book
(Authentication information of General Users, Document
User Administrator
The General User themselves
Copyright (c) 2009,2010 RICOH COMPANY, LTD. All Rights Reserved.