Table 7: List Of Subjects, Objects, And Operations Among Subjects And Objects; Table 8: Subjects, Objects And Security Attributes; Table 9: Rules Governing Access - Ricoh Gestetner MP 4001 Manual

Table of Contents

Advertisement

Table 7: List of subjects, objects, and operations among subjects and objects

Subjects
Administrator process
General user process
FDP_ACF.1
Security attribute based access control
Hierarchical to:
Dependencies:
FDP_ACF.1.1 The TSF shall enforce the [assignment: MFP access control SFP] to objects based on the
following: [assignment: subjects or objects, and their corresponding security attributes
shown Table 8].
Types
Subjects or objects
Subject
Administrator process
Subject
General user process
Object
Document data
 
FDP_ACF.1.2 The TSF shall enforce the following rules to determine if an operation among controlled
subjects and controlled objects is allowed: [assignment: rules governing subject
operations on objects and access to the operations shown in Table 9].
Subject
Operations on objects
General
user
Storing document data
process
Reading document data
Copyright (c) 2010 RICOH COMPANY, LTD. All Rights Reserved.
Objects
Document data
Document data
No other components.
FDP_ACC.1 Subset access control
FMT_MSA.3 Static attribute initialisation.

Table 8: Subjects, objects and security attributes

Table 9: Rules governing access

General users can store document data. When the document
data is stored, the document data default ACL associated with
the general user process is copied to the document data ACL
associated with the document data.
A general user process has permission to read document data
if the general user ID associated with the general user process
matches either the document file owner ID or the document
file user ID in the document data ACL associated with the
document data, and if the matched ID has viewing, editing,
editing/deleting, or full control permission.
Operations among subjects and objects
Deleting document data
Storing document data
Reading document data
Deleting document data
Security attributes
- Administrator IDs
- Administrator roles
- General user ID
- Document data default ACL
- Document data ACL
Rules governing access
Page 40 of 81

Advertisement

Table of Contents
loading

Table of Contents