Ricoh Aficio MP 7001 SP Manual page 41

With dataoverwritesecurity unit type h security target
Hide thumbs Also See for Aficio MP 7001 SP:
Table of Contents

Advertisement

P. AUDIT.LOGGING
P . A U D I T . L O G G I N G i s e n f o r c e d b y O . A U D I T . L O G G E D , O E . A U D I T . R E V I E W E D ,
O E . A U D I T _ S T O R A G E . P R O T E C T E D a n d O E . A U D I T _ A C C E S S . A U T H O R I Z E D .
By O.AUDIT.LOGGED, the TOE creates and maintains a log of TOE use and security-relevant events in the
MFP and prevents its unauthorised disclosure or alteration.
By OE.AUDIT.REVIEWED, the responsible manager of MFP reviews audit logs at appropriate intervals for
security violations or unusual patterns of activity according to the guidance document.
By OE.AUDIT_STORAGE.PROTECTED, if audit records are exported from the TOE to another trusted IT
product, the responsible manager of MFP protects those records from unauthorised access, deletion and
alteration. By OE.AUDIT_ACCESS.AUTHORIZED, the responsible manager of MFP ensures that those
records can be accessed in order to detect potential security violations, and only by authorised persons.
P.AUDIT.LOGGING is enforced by these objectives.
P.INTERFACE.MANAGEMENT
P.INTERFACE.MANAGEMENT is enforced by O.INTERFACE.MANAGED and OE.INTERFACE.MANAGED.
By O.INTERFACE.MANAGED, the TOE manages the operation of the external interfaces (the Operation
Panel, LAN, USB and telephone line) in accordance with the security policies. The TOE controls the access
to the Operation Panel and the opened LAN ports, and limits the functions which are available from
telephone line. By OE.INTERFACE.MANAGED, the TOE appropriately controls the access to the LAN and
USB. Specifically,
(1) The responsible manager of MFP gives an instruction to appropriately configure the firewall to
prevent attacks to the LAN from the Internet,
(2) The responsible manager of MFP instructs the MFP administrators to close the unused LAN ports,
(3) The use of USB is deactivated at the time of installation.
P.INTERFACE.MANAGEMENT is enforced by these objectives.
P.STORAGE.ENCRYPTION
P.STORAGE.ENCRYPTION is enforced by O.STORAGE.ENCRYPTED.
By OE.PHYSICAL.MANAGED, the TOE encrypts and decrypts the data written into/read from the HDD,
and ensures that the only encrypted data is written into the HDD.
P.STORAGE.ENCRYPTION is enforced by this objective.
A.ACCESS.MANAGED
A.ACCESS.MANAGED is upheld by OE.PHYSICAL.MANAGED.
By OE.PHYSICAL.MANAGED, the TOE is located in a restricted or monitored environment according to
the guidance documents and is protected from the physical access by the unauthorised persons.
A.ACCESS.MANAGED is upheld by this objective.
A.ADMIN.TRAINING
A.ADMIN.TRAINING is upheld by OE.ADMIN.TRAINED.
Copyright (c) 2011 RICOH COMPANY, LTD. All rights reserved.
Page 40 of 87

Advertisement

Table of Contents
loading

Table of Contents