Ricoh Aficio MP 5002 Security Target - Page 90

Security Management Function

Page 90 highlights

Page 89 of 93 If the MFP administrator gives instructions to generate an HDD cryptographic key from the Operation Panel, the TOE uses a genuine random number generator and generates random numbers that conform to the standard BSI-AIS31. 7.8 Security Management Function The Security Management Function consists of functions to 1) control operations for TSF data, 2) maintain user roles assigned to normal users, MFP administrator, or supervisor to operate the Security Management Function, and 3) set appropriate default values to security attributes, all of which accord with user role privileges or user privileges that are assigned to normal users, MFP administrator, or supervisor. FMT_MSA.1(a), FMT_MSA.1(b), FMT_MSA.3(a), FMT_MTD.1, FMT_SMF.1 and FMT_SMR.1 The TOE allows operations for TSF data according to the rules described in Table 40. Table 40 : Management of TSF Data TSF Data Login user names of normal users when Basic Authentication is applied Login user names of normal users when External Authentication is applied (*1) Login user name of supervisor Login user name of MFP administrator Document data attributes Document user list Stored document types are Document Server document, scanner document, fax document and printer document (with stored print) Operation Interface Operation Panel, Web browser Operation Panel, Web browser Operation Panel, Web browser Operation Panel, Web browser No operation interfaces available Operations Newly create, query, modify, delete Query Newly create, query, modify, delete Query, modify Newly create Query, modify Query No operations allowed Operation Panel, Web browser Query, modify Users MFP administrator Applicable normal user MFP administrator Supervisor MFP administrator Applicable MFP administrator Supervisor None MFP administrator, applicable normal user who stored the document Copyright (c) 2012 RICOH COMPANY, LTD. All rights reserved.

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94

Page 89 of
93
Copyright (c) 2012 RICOH COMPANY, LTD. All rights reserved.
If the MFP administrator gives instructions to generate an HDD cryptographic key from the Operation Panel,
the TOE uses a genuine random number generator and generates random numbers that conform to the
standard BSI-AIS31.
7.8
Security Management Function
The Security Management Function consists of functions to 1) control operations for TSF data, 2) maintain
user roles assigned to normal users, MFP administrator, or supervisor to operate the Security Management
Function, and 3) set appropriate default values to security attributes, all of which accord with user role
privileges or user privileges that are assigned to normal users, MFP administrator, or supervisor.
FMT_MSA.1(a), FMT_MSA.1(b), FMT_MSA.3(a), FMT_MTD.1, FMT_SMF.1 and FMT_SMR.1
The TOE allows operations for TSF data according to the rules described in Table 40.
Table 40 : Management of TSF Data
TSF Data
Operation
Interface
Operations
Users
Newly create,
query,
modify,
delete
MFP administrator
Login user names of normal users
when Basic Authentication is
applied
Operation Panel,
Web browser
Query
Applicable normal
user
Login user names of normal users
when External Authentication is
applied (*1)
Operation Panel,
Web browser
Newly create,
query,
modify,
delete
MFP administrator
Login user name of supervisor
Operation Panel,
Web browser
Query,
modify
Supervisor
Newly create
MFP administrator
Query,
modify
Applicable MFP
administrator
Login user name of MFP
administrator
Operation Panel,
Web browser
Query
Supervisor
Document data attributes
No operation
interfaces available
No operations
allowed
None
Document user list
Stored document types are
Document Server document,
scanner document, fax document
and printer document (with stored
print)
Operation Panel,
Web browser
Query,
modify
MFP administrator,
applicable normal
user who stored the
document