Ricoh Aficio MP C2800 Security Target - Page 48

Table 19: List of specifications of Management Functions

Page 48 highlights

Table 19: List of specifications of Management Functions Page 48 of 80 Functional requirements FAU_GEN.1 FAU_SAR.1 FAU_SAR.2 FAU_STG.1 FAU_STG.4 FCS_CKM.1 FCS_COP.1 FDP_ACC.1 FDP_ACF.1 FDP_IFC.1 FDP_IFF.1 FIA_AFL.1 FIA_ATD.1 FIA_SOS.1 FIA_UAU.2 Management requirements Management items None a) Maintenance (deletion, modification, addition) of the group of users with read access right to the audit records. None None a) Maintenance (deletion, modification, addition) of actions to be taken in case of audit storage failure. None None None a) Managing the attributes used to make explicit access or denial based decisions. None a) Managing the attributes used to make explicit access based decisions. a) Management of the threshold for unsuccessful authentication attempts. b) Management of actions to be taken in the event of an authentication failure. a) If so indicated in the assignment, the authorised administrator might be able to define additional security attributes for users. a) Management of the metric used to verify the secrets. a) Management of the authentication data by an administrator, b) Management of the authentication data by the user associated with this a) Management of the machine administrator from administrator roles. None: Actions are fixed and not an object of management. a) Management of the file administrator from administrator roles. None: Attributes (data type) used to make explicit access-based decisions are fixed and there are no interfaces to change. a) Security Management Function (management of machine control data): management of the Number of Attempts before Lockout by machine administrator. b) Management of unlocking administrators and Lockout release operations for locked-out users. None: No functions for defining additional security attributes for users. Security Management Function (management of machine control data): The user administrator manages the following settings of the machine control data: - Minimum Password Length - Password Complexity Setting - Security Management Function (management of general user information): management of authentication information of general Copyright (c) 2009,2010 RICOH COMPANY, LTD. All Rights Reserved.

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80

Page 48 of 80
Copyright (c) 2009,2010 RICOH COMPANY, LTD. All Rights Reserved.
Table 19: List of specifications of Management Functions
Functional
requirements
Management requirements
Management items
FAU_GEN.1
None
-
FAU_SAR.1
a) Maintenance (deletion, modification,
addition) of the group of users with read
access right to the audit records.
a) Management of the machine
administrator from administrator roles.
FAU_SAR.2
None
-
FAU_STG.1
None
-
FAU_STG.4
a) Maintenance (deletion, modification,
addition) of actions to be taken in case
of audit storage failure.
None: Actions are fixed and not an object
of management.
FCS_CKM.1
None
-
FCS_COP.1
None
-
FDP_ACC.1
None
-
FDP_ACF.1
a) Managing the attributes used to make
explicit access or denial based
decisions.
a) Management of the file administrator
from administrator roles.
FDP_IFC.1
None
-
FDP_IFF.1
a) Managing the attributes used to make
explicit access based decisions.
None: Attributes (data type) used to make
explicit access-based decisions are fixed
and there are no interfaces to change.
FIA_AFL.1
a) Management of the threshold for
unsuccessful authentication attempts.
b) Management of actions to be taken in
the event of an authentication failure.
a) Security Management Function
(management of machine control data):
management of the Number of Attempts
before Lockout by machine administrator.
b) Management of unlocking
administrators and Lockout release
operations for locked-out users.
FIA_ATD.1
a) If so indicated in the assignment, the
authorised administrator might be able
to define additional security attributes
for users.
None: No functions for defining additional
security attributes for users.
FIA_SOS.1
a) Management of the metric used to
verify the secrets.
Security Management Function
(management of machine control data):
The user administrator manages the
following settings of the machine control
data:
- Minimum Password Length
- Password Complexity Setting
FIA_UAU.2
a) Management of the authentication
data by an administrator,
b) Management of the authentication
data by the user
associated with this
- Security Management Function
(management of general user
information): management of
authentication information of general