Ricoh Aficio MP 5002 Security Target - Page 59

Table 24 : List of Security Attributes for Each User That Shall Be Maintained - sp

Page 59 highlights

Page 58 of 93 MFP administrator The lockout for the MFP administrator is released by the lockout time set by the MFP administrator, release operation by a supervisor, or elapse of a given time after the TOE's restart. FIA_ATD.1 User attribute definition Hierarchical to: No other components. Dependencies: No dependencies. FIA_ATD.1.1 The TSF shall maintain the following list of security attributes belonging to individual users: [assignment: the security attributes listed in Table 24 for each user in Table 24]. Table 24 : List of Security Attributes for Each User That Shall Be Maintained Users Normal user Supervisor MFP administrator RC Gate List of Security Attributes - Login user name of normal user - User role - Available function list - User role - Login user name of MFP administrator - User role - User role FIA_SOS.1 Verification of secrets Hierarchical to: No other components. Dependencies: No dependencies. FIA_SOS.1.1 The TSF shall provide a mechanism to verify that secrets (refinement: secrets used in Basic Authentication) meet [assignment: the following quality metrics]. (1) Usable character and types: Upper-case letters: [A-Z] (26 letters) Lower-case letters: [a-z] (26 letters) Numbers: [0-9] (ten digits) Symbols: SP (spaces 33 symbols) (2) Registrable password length: For normal users: No fewer than the minimum character number specified by MFP administrator (8-32 characters) and no more than 128 characters. For MFP administrators and a supervisor: No fewer than the minimum character number specified by MFP administrator (8-32 characters) and no more than 32 characters. (3) Rule: Passwords that are composed of a combination of characters based on the password complexity setting specified by the MFP administrator can be registered. The MFP administrator specifies either Level 1 or Level 2 for password complexity setting. Copyright (c) 2012 RICOH COMPANY, LTD. All rights reserved.

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94

Page 58 of
93
Copyright (c) 2012 RICOH COMPANY, LTD. All rights reserved.
MFP administrator
The lockout for the MFP administrator is released by the lockout time set by the
MFP administrator, release operation by a supervisor, or elapse of a given time
after the TOE's restart.
FIA_ATD.1
User attribute definition
Hierarchical to:
No other components.
Dependencies:
No dependencies.
FIA_ATD.1.1
The TSF shall maintain the following list of security attributes belonging to individual users:
[assignment: the security attributes listed in Table 24 for each user in Table 24]
.
Table 24 : List of Security Attributes for Each User That Shall Be Maintained
Users
List of Security Attributes
Normal user
- Login user name of normal user
- User role
- Available function list
Supervisor
- User role
MFP administrator
- Login user name of MFP administrator
- User role
RC Gate
- User role
FIA_SOS.1
Verification of secrets
Hierarchical to:
No other components.
Dependencies:
No dependencies.
FIA_SOS.1.1
The TSF shall provide a mechanism to verify that secrets (refinement: secrets used in Basic
Authentication) meet
[assignment: the following quality metrics]
.
(1) Usable character and types:
Upper-case letters: [A-Z] (26 letters)
Lower-case letters: [a-z] (26 letters)
Numbers: [0-9] (ten digits)
Symbols: SP (spaces) ! " # $ % & ' ( ) * + , - . / : ; < = > ? @ [ \ ] ^ _ ` { | } ~ (33 symbols)
(2) Registrable password length:
For normal users:
No fewer than the minimum character number specified by MFP administrator (8-32 characters) and no
more than 128 characters.
For MFP administrators and a supervisor:
No fewer than the minimum character number specified by MFP administrator (8-32 characters) and no
more than 32 characters.
(3) Rule:
Passwords that are composed of a combination of characters based on the password complexity setting
specified by the MFP administrator can be registered. The MFP administrator specifies either Level 1 or
Level 2 for password complexity setting.