Ricoh Aficio MP C2800 Security Target - Page 46

FMT_MTD.1, Management of TSF data

Page 46 highlights

Table 17: Characteristics of static attribute initialisation Page 46 of 80 Object Document data stored by general users Security attribute associated with object Document data ACL Default value and its characteristic at time of object creation A value set in advance as the document data default ACL for the applicable general user (document file owner). This value can be set arbitrarily by the user administrator or the general user, and it has neither a restrictive nor permissive property, only the specified pro perty. FMT_MTD.1 Management of TSF data Hierarchical to: No other components. Dependencies: FMT_SMR.1 Security roles FMT_SMF.1 Specification of Management Functions FMT_MTD.1.1 The TSF shall restrict the ability to[selection: query, modify, delete, [assignment: register, change, entirely delete, newly create]]the [assignment: list of TSF data management in Table 18 to [assignment: roles in Table 18 Table 18: List of TSF data management TSF data Authentication information of general users (a data item of general user information) Operations Newly create, change, delete Change Supervisor authentication information Administrator information authentication Change Change Number of Attempts before Lockout Setting for Lockout Release Timer Lockout time Date and time of system clock Date setting, time setting (hour, minute, Query, modify Query, modify Query, modify Query, modify User roles User administrator Applicable general users of general user information Supervisor Supervisor Applicable administrator of administrator authentication information Machine administrator Machine administrator Machine administrator Machine administrator Copyright (c) 2009,2010 RICOH COMPANY, LTD. All Rights Reserved.

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80

Page 46 of 80
Copyright (c) 2009,2010 RICOH COMPANY, LTD. All Rights Reserved.
Table 17: Characteristics of static attribute initialisation
Object
Security attribute associated
with object
Default value and its characteristic at
time of object creation
Document data stored
by general users
Document data ACL
A value set in advance as the document
data default ACL for the applicable
general user (document file owner). This
value can be set arbitrarily by the user
administrator or the general user, and it
has neither a restrictive nor permissive
property, only the specified property.
FMT_MTD.1
Management of TSF data
Hierarchical to:
No other components.
Dependencies:
FMT_SMR.1 Security roles
FMT_SMF.1 Specification of Management Functions
FMT_MTD.1.1 The TSF shall
restrict the ability to
[selection: query, modify, delete, [assignment: register,
change, entirely delete, newly create]]
the
[assignment: list of TSF data management in
Table 18
]
to
[assignment: roles in
Table 18
]
.
Table 18: List of TSF data management
TSF data
Operations
User roles
Newly create,
change,
delete
User administrator
Authentication information of general
users (a data item of general user
information)
Change
Applicable general users of general user
information
Supervisor authentication information
Change
Supervisor
Administrator
authentication
information
Change
Supervisor
Applicable administrator of administrator
authentication information
Number of Attempts before Lockout
Query,
modify
Machine administrator
Setting for Lockout Release Timer
Query,
modify
Machine administrator
Lockout time
Query,
modify
Machine administrator
Date and time of system clock
Date setting, time setting (hour, minute,
Query,
modify
Machine administrator