Ricoh Aficio MP 3351 Security Target - Page 51

Table 18: Rules on User Documents, Subject, Object, Rules Governing Access - printer drivers

Page 51 highlights

Table 18: Rules on User Documents Page 50 of 87 Subject Normal user process Object User document Rules Governing Access The TOE controls the operations on user documents in the following order 1) and 2). 1) Limit the document types by MFP applications 2) Limit the operation by each normal user 1) Limit the document types by MFP applications The availability of a user document is determined by the operation interface for normal user, application type associated with the normal user process, and document type associated with the user document. The following table shows the relationship between the application type and available document type. Operation Interfaces Application Type Available Document Type Operation Panel Document Function Server Document Server user document, fax document Scanner Function Fax Function Scanner user document Fax document, received fax document Client computer (Web browser) Document Function Server Document Server user document, scanner user document (operation permission for Scanner Function is required for the applicable normal user), fax document (operation permission for Fax Function is required for the applicable normal user) Fax Function Received fax document Client computer (printer driver) Printer Function Document Server user document Client computer (fax driver) Fax Function Fax document 2) Limit the operation for each normal user When the document user list associated with the user documents includes the login user name of the normal user associated with the normal user process, the user document operations of reading (print, download, fax, e-mail and folder transmission) and deletion are allowed for that normal user process. Copyright (c) 2011 RICOH COMPANY, LTD. All rights reserved.

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88

Page 50 of
87
Copyright (c) 2011 RICOH COMPANY, LTD. All rights reserved.
Table 18: Rules on User Documents
Subject
Object
Rules Governing Access
Normal
user
process
User
document
The TOE controls the operations on user documents in the following order 1)
and 2).
1) Limit the document types by MFP applications
2) Limit the operation by each normal user
1) Limit the document types by MFP applications
The availability of a user document is determined by the operation interface for
normal user, application type associated with the normal user process, and
document type associated with the user document. The following table shows
the relationship between the application type and available document type.
Operation
Interfaces
Application Type
Available Document Type
Document
Server
Function
Document
Server
user
document,
fax document
Scanner Function
Scanner user document
Operation
Panel
Fax Function
Fax document,
received fax document
Document
Server
Function
Document
Server
user
document,
scanner
user
document
(operation
permission
for
Scanner Function is required
for the applicable normal
user),
fax
document
(operation
permission for Fax Function
is required for the applicable
normal user)
Client
computer
(Web
browser)
Fax Function
Received fax document
Client
computer
(printer
driver)
Printer Function
Document
Server
user
document
Client
computer (fax
driver)
Fax Function
Fax document
2) Limit the operation for each normal user
When the document user list associated with the user documents includes the
login user name of the normal user associated with the normal user process,
the user document operations of reading (print, download, fax, e-mail and
folder transmission) and deletion are allowed for that normal user process.