Ricoh Aficio MP 5002 Security Target - Page 64

Table 28 : Authorised Identified Roles Allowed to Override Default Values - default login

Page 64 highlights

Page 63 of 93 Dependencies: FMT_MSA.1 Management of security attributes FMT_SMR.1 Security roles FMT_MSA.3.1(a) The TSF shall enforce the [assignment: document access control SFP] to provide [selection: restrictive] default values for security attributes that are used to enforce the SFP. FMT_MSA.3.2(a) The TSF shall allow the [assignment: authorised identified roles shown in Table 28] to specify alternative initial values to override the default values when an object or information is created. Table 28 : Authorised Identified Roles Allowed to Override Default Values Objects Document data Document data [when document data attribute is (+DSR)] Document data [when document data attributes are (+PRT), (+SCN), (+CPY), (+FAXIN), and (+FAXOUT)] User job Security Attributes Document data attribute Document user list Document user list Authorised Identified Roles No authorised identified roles MFP administrator, Normal user who stored the applicable document data No authorised identified roles Login user name of normal user No authorised identified roles FMT_MSA.3(b) Static attribute initialisation Hierarchical to: No other components. Dependencies: FMT_MSA.1 Management of security attributes FMT_SMR.1 Security roles FMT_MSA.3.1(b)The TSF shall enforce the [assignment: TOE function access control SFP] to provide [selection: restrictive] default values for security attributes that are used to enforce the SFP. FMT_MSA.3.2(b)The TSF shall allow the [assignment: no authorised identified roles] to specify alternative initial values to override the default values when an object or information is created. FMT_MTD.1 Management of TSF data Hierarchical to: No other components. Dependencies: FMT_SMR.1 Security roles FMT_SMF.1 Specification of Management Functions FMT_MTD.1.1 The TSF shall restrict the ability to [selection: query, modify, delete, [assignment: newly create]] the [assignment: list of TSF data in Table 29] to [assignment: the user roles in Table 29]. Copyright (c) 2012 RICOH COMPANY, LTD. All rights reserved.

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94

Page 63 of
93
Copyright (c) 2012 RICOH COMPANY, LTD. All rights reserved.
Dependencies:
FMT_MSA.1 Management of security attributes
FMT_SMR.1 Security roles
FMT_MSA.3.1(a) The TSF shall enforce the
[assignment: document access control SFP]
to provide
[selection:
restrictive]
default values for security attributes that are used to enforce the SFP.
FMT_MSA.3.2(a) The TSF shall allow the
[assignment: authorised identified roles shown in Table 28]
to
specify alternative initial values to override the default values when an object or information is
created.
Table 28 : Authorised Identified Roles Allowed to Override Default Values
Objects
Security
Attributes
Authorised Identified Roles
Document data
Document data
attribute
No authorised identified roles
Document data
[when document data
attribute is (+DSR)]
Document user list
MFP administrator,
Normal user who stored the applicable document
data
Document data
[when document data
attributes are (+PRT),
(+SCN), (+CPY),
(+FAXIN), and
(+FAXOUT)]
Document user list
No authorised identified roles
User job
Login user name
of normal user
No authorised identified roles
FMT_MSA.3(b)
Static attribute initialisation
Hierarchical to:
No other components.
Dependencies:
FMT_MSA.1 Management of security attributes
FMT_SMR.1 Security roles
FMT_MSA.3.1(b)The TSF shall enforce the
[assignment: TOE function access control SFP]
to provide
[selection: restrictive]
default values for security attributes that are used to enforce the SFP.
FMT_MSA.3.2(b) The TSF shall allow the
[assignment: no authorised identified roles]
to specify alternative
initial values to override the default values when an object or information is created.
FMT_MTD.1 Management of TSF data
Hierarchical to:
No other components.
Dependencies:
FMT_SMR.1 Security roles
FMT_SMF.1 Specification of Management Functions
FMT_MTD.1.1
The TSF shall restrict the ability to
[selection: query, modify, delete, [assignment: newly
create]]
the
[assignment: list of TSF data in Table 29]
to
[assignment: the user roles in
Table 29]
.