Ricoh Aficio MP 6001 SP Security Target - Page 87

FTP_ITC.1 Inter-TSF trusted channel - power

Page 87 highlights

Page 86 of 87 FPT_STM.1 (Reliable time stamps) The TOE records the date (year-month-day) and time (hour-minute-second) for the audit log using the system clock of the TOE. FPT_TST.1 (TSF testing) The TOE runs a suite of self tests during the initial start-up after the power is supplied. For the FCU, the TOE provides the users with the verification information to verify the integrity of executable code of the control software. The users compare the verification information from the TOE to the verification information described in the guidance document, and verify the integrity of the FCU. If no errors are detected, the users can use the TOE. For configurations other than the FCU, the integrity of executable code of the MFP Control Software and audit log data files is verified. If errors are detected by the integrity verification of executable code of the MFP Control Software, an error message appears on the Operation Panel. The TOE is deactivated and normal users cannot use the TOE. If errors are detected by the integrity verification of the audit log data files, an error message appears on the Operation Panel. The TOE is deactivated and normal users cannot use the TOE. If no errors are detected by both of these verifications, the TOE is activated and users can use it. FPT_FDI_EXP.1 (Restricted forwarding of data to external interfaces) The TOE inputs the information after the TSF identifies and authenticates the input information from the Operation Panel or LAN interface. Therefore, the input information cannot be forwarded without the TSF interaction. For the input information from the telephone line, the TOE specifies the Fax Reception Function as the only available function from the telephone lines, and denies the communication that does not conform to the fax protocol. Since the function, which conforms to the fax protocol, to forward data is prohibited at the initial setting, no data is forwarded. The TSF restricts the Operation Panel, LAN interface and telephone line, therefore, the forwarding of data is not performed without any processing. FTA_SSL.3 (TSF-initiated termination) The TOE provides the function to forcibly logout after the user logs in from the Operation Panel and the auto logout time elapses from the last operation from the Operation Panel. The auto logout time (180 seconds by default) is specified by the administrator with machine management privilege. The TOE provides the function to forcibly logout after the user logs in from a Web browser, and the fixed auto log out time (30 minutes by default) elapses from the last operation from a Web browser. This TOE has the interface from the printer driver, and provides the function to forcibly logout after it receives the print data from the printer driver. It also has the interface from the fax driver, and provides the function to forcibly logout after it receives the transmission information from the fax driver. FTP_ITC.1 (Inter-TSF trusted channel) The TOE provides SSL encrypted communication as a trusted channel to protect the LAN communication between the TOE and a client computer, which is a trusted IT product, for the operations via a Web browser of client computer, and the operations of printing, fax transmission, and fax data storage from client Copyright (c) 2011 RICOH COMPANY, LTD. All rights reserved.

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88

Page 86 of
87
FPT_STM.1 (Reliable time stamps)
The TOE records the date (year-month-day) and time (hour-minute-second) for the audit log using the
system clock of the TOE.
FPT_TST.1 (TSF testing)
The TOE runs a suite of self tests during the initial start-up after the power is supplied.
For the FCU, the TOE provides the users with the verification information to verify the integrity of
executable code of the control software. The users compare the verification information from the TOE to the
verification information described in the guidance document, and verify the integrity of the FCU. If no errors
are detected, the users can use the TOE.
For configurations other than the FCU, the integrity of executable code of the MFP Control Software and
audit log data files is verified. If errors are detected by the integrity verification of executable code of the
MFP Control Software, an error message appears on the Operation Panel. The TOE is deactivated and
normal users cannot use the TOE. If errors are detected by the integrity verification of the audit log data files,
an error message appears on the Operation Panel. The TOE is deactivated and normal users cannot use the
TOE. If no errors are detected by both of these verifications, the TOE is activated and users can use it.
FPT_FDI_EXP.1 (Restricted forwarding of data to external interfaces)
The TOE inputs the information after the TSF identifies and authenticates the input information from the
Operation Panel or LAN interface. Therefore, the input information cannot be forwarded without the TSF
interaction. For the input information from the telephone line, the TOE specifies the Fax Reception Function
as the only available function from the telephone lines, and denies the communication that does not conform
to the fax protocol. Since the function, which conforms to the fax protocol, to forward data is prohibited at
the initial setting, no data is forwarded.
The TSF restricts the Operation Panel, LAN interface and telephone line, therefore, the forwarding of data is
not performed without any processing.
FTA_SSL.3 (TSF-initiated termination)
The TOE provides the function to forcibly logout after the user logs in from the Operation Panel and the auto
logout time elapses from the last operation from the Operation Panel. The auto logout time (180 seconds by
default) is specified by the administrator with machine management privilege.
The TOE provides the function to forcibly logout after the user logs in from a Web browser, and the fixed
auto log out time (30 minutes by default) elapses from the last operation from a Web browser.
This TOE has the interface from the printer driver, and provides the function to forcibly logout after it
receives the print data from the printer driver. It also has the interface from the fax driver, and provides the
function to forcibly logout after it receives the transmission information from the fax driver.
FTP_ITC.1 (Inter-TSF trusted channel)
The TOE provides SSL encrypted communication as a trusted channel to protect the LAN communication
between the TOE and a client computer, which is a trusted IT product, for the operations via a Web browser
of client computer, and the operations of printing, fax transmission, and fax data storage from client
Copyright (c) 2011 RICOH COMPANY, LTD. All rights reserved.