Ricoh Aficio MP 6001 SP Security Target - Page 51

Table 18: Rules on User Documents, Subject, Object, Rules Governing Access

Page 51 highlights

Table 18: Rules on User Documents Page 50 of 87 Subject Normal user process Object User document Rules Governing Access The TOE controls the operations on user documents in the following order 1) and 2). 1) Limit the document types by MFP applications 2) Limit the operation by each normal user 1) Limit the document types by MFP applications The availability of a user document is determined by the operation interface for normal user, application type associated with the normal user process, and document type associated with the user document. The following table shows the relationship between the application type and available document type. Operation Interfaces Application Type Available Document Type Operation Panel Document Function Server Document Server user document, fax document Scanner Function Scanner user document Fax Function Fax document, received fax document Client computer (Web browser) Document Function Server Document Server user document, scanner user document (operation permission for Scanner Function is required for the applicable normal user), fax document (operation permission for Fax Function is required for the applicable normal user) Fax Function Received fax document (operation permission for Document Server Function is required for the applicable normal user) Client computer (printer driver) Printer Function Document Server user document Client computer (fax driver) Fax Function Fax document 2) Limit the operation for each normal user When the document user list associated with the user documents includes the login user name of the normal user associated with the normal user process, the user document operations of reading (print, download, fax, e-mail and folder transmission) and deletion are allowed for that normal user process. Copyright (c) 2011 RICOH COMPANY, LTD. All rights reserved.

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88

Page 50 of
87
Table 18: Rules on User Documents
Subject
Object
Rules Governing Access
Normal
user
process
User
document
The TOE controls the operations on user documents in the following order 1) and 2).
1) Limit the document types by MFP applications
2) Limit the operation by each normal user
1) Limit the document types by MFP applications
The availability of a user document is determined by the operation interface for
normal user, application type associated with the normal user process, and document
type associated with the user document. The following table shows the relationship
between the application type and available document type.
Operation
Interfaces
Application Type
Available Document Type
Document
Server
Function
Document Server user document,
fax document
Scanner Function
Scanner user document
Operation
Panel
Fax Function
Fax document,
received fax document
Document
Server
Function
Document Server user document,
scanner user document (operation
permission for Scanner Function
is required for the applicable
normal user),
fax
document
(operation
permission for Fax Function is
required for the applicable normal
user)
Client
computer
(Web
browser)
Fax Function
Received fax document (operation
permission for Document Server
Function
is
required
for
the
applicable normal user)
Client
computer
(printer
driver)
Printer Function
Document Server user document
Client
computer (fax
driver)
Fax Function
Fax document
2) Limit the operation for each normal user
When the document user list associated with the user documents includes the login
user name of the normal user associated with the normal user process, the user
document operations of reading (print, download, fax, e-mail and folder
transmission) and deletion are allowed for that normal user process.
Copyright (c) 2011 RICOH COMPANY, LTD. All rights reserved.