Ricoh Aficio MP C3501 Security Target - Page 41

Security Objectives of Operational Environment

Page 41 highlights

Page 40 of 93 O.USER.AUTHORIZED User identification and authentication The TOE shall require identification and authentication of users and shall ensure that users are authorised in accordance with security policies before allowing them to use the TOE. O.INTERFACE.MANAGED Management of external interfaces by TOE The TOE shall manage the operation of external interfaces in accordance with the security policies. O.SOFTWARE.VERIFIED Software verification The TOE shall provide procedures to self-verify executable code in the TSF. O.AUDIT.LOGGED Management of audit log records The TOE shall create and maintain a log of TOE use and security-relevant events in the MFP and prevent its unauthorised disclosure or alteration. O.STORAGE.ENCRYPTED Encryption of storage devices The TOE shall ensure that the data is encrypted first and then stored on the HDD. O.RCGATE.COMM.PROTECT Protection of communication with RC Gate The TOE shall conceal the communication data on the communication path between itself and RC Gate, and detect any tampering with those communication data. 4.2 Security Objectives of Operational Environment This section describes the security objectives of the operational environment. 4.2.1 IT Environment OE.AUDIT_STORAGE.PROTECTED Audit log protection in trusted IT products If audit logs are exported to a trusted IT product, the responsible manager of MFP shall ensure that those logs are protected from unauthorised access, deletion and modifications. OE.AUDIT_ACCESS.AUTHORIZED Audit log access control in trusted IT products If audit logs are exported to a trusted IT product, the responsible manager of MFP shall ensure that those logs can be accessed in order to detect potential security violations, and only by authorised persons. Copyright (c) 2011 RICOH COMPANY, LTD. All rights reserved.

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94

Page 40 of
93
Copyright (c) 2011 RICOH COMPANY, LTD. All rights reserved.
O.USER.AUTHORIZED
User identification and authentication
The TOE shall require identification and authentication of users and shall ensure that
users are authorised in accordance with security policies before allowing them to use the
TOE.
O.INTERFACE.MANAGED
Management of external interfaces by TOE
The TOE shall manage the operation of external interfaces in accordance with the
security policies.
O.SOFTWARE.VERIFIED Software verification
The TOE shall provide procedures to self-verify executable code in the TSF.
O.AUDIT.LOGGED
Management of audit log records
The TOE shall create and maintain a log of TOE use and security-relevant events in the
MFP and prevent its unauthorised disclosure or alteration.
O.STORAGE.ENCRYPTED Encryption of storage devices
The TOE shall ensure that the data is encrypted first and then stored on the HDD.
O.RCGATE.COMM.PROTECT
Protection of communication with RC Gate
The TOE shall conceal the communication data on the communication path between
itself and RC Gate, and detect any tampering with those communication data.
4.2
Security Objectives of Operational Environment
This section describes the security objectives of the operational environment.
4.2.1
IT Environment
OE.AUDIT_STORAGE.PROTECTED
Audit log protection in trusted IT products
If audit logs are exported to a trusted IT product, the responsible manager of MFP shall
ensure that those logs are protected from unauthorised access, deletion and
modifications.
OE.AUDIT_ACCESS.AUTHORIZED
Audit log access control in trusted IT products
If audit logs are exported to a trusted IT product, the responsible manager of MFP shall
ensure that those logs can be accessed in order to detect potential security violations,
and only by authorised persons.