Justification Of Traceability - Ricoh Aficio MP 7001 SP Manual

With dataoverwritesecurity unit type h security target
Hide thumbs Also See for Aficio MP 7001 SP:
Table of Contents

Advertisement

FDP_ACC.1(b)
FDP_ACF.1(a)
FDP_ACF.1(b)
FDP_RIP.1
FIA_AFL.1
FIA_ATD.1
FIA_SOS.1
FIA_UAU.1
FIA_UAU.7
FIA_UID.1
FIA_USB.1
FPT_FDI_EXP.1
FMT_MSA.1(a)
FMT_MSA.1(b)
FMT_MSA.3(a)
FMT_MSA.3(b)
FMT_MTD.1
FMT_SMF.1
FMT_SMR.1
FPT_STM.1
FPT_TST.1
FTA_SSL.3
FTP_ITC.1
6.3.2

Justification of Traceability

This section describes below how the TOE security objectives are fulfilled by the TOE security functional
requirements corresponding to the TOE security objectives.
O.DOC.NO_DIS Protection of document disclosure
O.DOC.NO_DIS is the security objective to prevent the documents from unauthorised disclosure by persons
without a login user name, or by persons with a login user name but without an access permission to the
document. To fulfil this security objective, it is required to implement the following countermeasures.
(1) Specify and implement the access control to the user document.
FDP_ACC.1(a) and FDP_ACF.1(a) restrict the reading of user document by the user role. Additionally,
the normal users are restricted to read the user document by the operation permission granted to them.
To normal users, the available document type of the user document is restricted by the executing MFP
application, and the normal user can read only user document for which the reading permission is
granted. The MFP administrator and supervisor are not allowed to read the user documents.
Copyright (c) 2011 RICOH COMPANY, LTD. All rights reserved.
X
X
X
X
X
X
X
X
X
X
X
X
X
X
X
X
X
X
X
X
X
X
X
X
X
X
X
X
X
X
X
X
X
X
X
X
X
X
X
X
X
X
Page 64 of 87
X
X
X
X
X

Advertisement

Table of Contents
loading

Table of Contents