Ricoh Aficio MP 5000b Dokumentacja

Przeglądaj online lub pobierz Dokumentacja dla Drukuj i skanuj Ricoh Aficio MP 5000b. Ricoh Aficio MP 5000b Specifications Instrukcja obsługi

  • Pobierz
  • Dodaj do moich podręczników
  • Drukuj
  • Strona
    / 100
  • Spis treści
  • BOOKMARKI
  • Oceniono. / 5. Na podstawie oceny klientów
Przeglądanie stron 0
Page 1 of 100
Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved.
imagio MP 4000/5000 series, Aficio MP 4000/5000 series
Security Target
Authors : RICOH COMPANY, LTD. Yasushi FUNAKI, Hiroshi KAKII, Atsushi SATOH
Date : 2009-10-30
Version : 1.13
This document is a translation of the evaluated and certified security target
written in Japanese
Przeglądanie stron 0
1 2 3 4 5 6 ... 99 100

Podsumowanie treści

Strona 1 - Security Target

Page 1 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. imagio MP 4000/5000 series, Aficio MP 4000/5000 series Security

Strona 2 - Revision History

Page 10 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Table 1: List of TOE Series Name Product Name/Model Name Ricoh

Strona 3 - Table of Contents

Page 100 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. 8.4 PP Claims Rationale This ST does not conform to any PPs.

Strona 4 - Page 4 of 100

Page 11 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. image I/O device that incorporates the functionality of copier,

Strona 5 - Page 5 of 100

Page 12 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Terms Definitions Operation Panel A display-input device that

Strona 6 - Page 6 of 100

Page 13 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Terms Definitions Administrator Role Management functions give

Strona 7 - List of Tables

Page 14 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Terms Definitions Store and Print Function A function that co

Strona 8

Page 15 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Terms Definitions Complexity Setting for Password The minimum c

Strona 9 - 1 ST Introduction

Page 16 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. 2 TOE Description This chapter outlines the type of the TOE, env

Strona 10 - 1.2 ST Overview

Page 17 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Location for TOE The TOE is assumed to be placed in general offi

Strona 11 - 1.4 Terminology

Page 18 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Connecting Internal and External Network When connecting the Int

Strona 12

Page 19 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Engine Unit The Engine Unit is configured with a Scanner Engine,

Strona 13

Page 2 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Revision History Version Date Authors Details 1.00 2008-12-16

Strona 14

Page 20 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Network Unit The Network Unit is an interface board for Ethernet

Strona 15

Page 21 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Table 3: List of Administrator Roles Administrator Roles Explan

Strona 16 - 2 TOE Description

Page 22 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Fax FunctionHDDFaxGeneral User Administrator SupervisorCEGenera

Strona 17

Page 23 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Figure 4: Operation Panel (for North America) In addition, Gen

Strona 18 - Operation Panel

Page 24 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. is operated from a client PC. Document Data stored in D-BOX for

Strona 19

Page 25 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. 3. Check the TOE status. 2.5.2 Security Functions Security fun

Strona 20 - 2.4 Involved Roles of TOE

Page 26 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. 2.5.2.3 Document Data Access Control Function The Document Data

Strona 21

Page 27 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. 1. Download the Document Data with the Web Service Function fro

Strona 22

Page 28 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. 5. Management of Machine Control Data Each Administrator is per

Strona 23 - 2.5.1.3 Fax Function

Page 29 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. 2.6.1.3 Outputting Document Data Document Data can be output by

Strona 24 - 2.5.1.6 Management Function

Page 3 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Table of Contents 1 ST Introduction...

Strona 25 - 2.5.2.1 Audit Function

Page 30 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. 3 TOE Security Environment This chapter describes the assumption

Strona 26

Page 31 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. T.ABUSE_SEC_MNG (Abuse of Security Management Function) Persons

Strona 27

Page 32 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. 4 Security Objectives This chapter describes the security object

Strona 28 - 2.6 Protected Assets

Page 33 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. O.LINE_PROTECT (Telephone Line Intrusion Protection) The TOE sh

Strona 29

Page 34 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. 5 IT Security Requirements 5.1 TOE Security Functional Requirem

Strona 30 - 3 TOE Security Environment

Page 35 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Functional Requirements Actions which should be auditable Audita

Strona 31

Page 36 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Functional Requirements Actions which should be auditable Audita

Strona 32 - 4 Security Objectives

Page 37 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Functional Requirements Actions which should be auditable Audita

Strona 33

Page 38 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Functional Requirements Actions which should be auditable Audita

Strona 34 - 5 IT Security Requirements

Page 39 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. FAU_STG.4 Prevention of audit data loss Hierarchical to: FA

Strona 35

Page 4 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. 2.5.2.4 Stored Data Protection Function...

Strona 36

Page 40 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. shown in Table 7] and cryptographic key sizes [assignment: crypt

Strona 37

Page 41 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Table 9: Subjects, Objects and Security Attributes Types Subje

Strona 38

Page 42 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. FDP_ACF.1.3 The TSF shall explicitly authorise access of subjec

Strona 39

Page 43 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Table 13: Security Attributes Corresponding to Subjects or Info

Strona 40

Page 44 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Table 14: List of Authentication Events Authentication events U

Strona 41 - Table 10]

Page 45 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. FIA_SOS.1 Verification of secrets Hierarchical to: No other

Strona 42 - Table 13]

Page 46 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. actions on behalf of that user. FIA_USB.1 User-subject binding

Strona 43

Page 47 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. FMT_MSA.1.1 The TSF shall enforce the [assignment: MFP access co

Strona 44 - Table 15, is taken]

Page 48 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Table 18: Property of static attribute initialisation Object S

Strona 45

Page 49 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. TSF data Operations User roles Query, modify Machine Administr

Strona 46 - Table 16]

Page 5 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. 6.1 TOE Security Function...

Strona 47 - Table 17]

Page 50 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Table 20: List of Specification of Management Functions Functio

Strona 48

Page 51 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. - Minimum Password Length - Complexity Setting for Password FIA_

Strona 49 - Table 20]

Page 52 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Administrators and delete Administrator Roles. FMT_MSA.1 a) Man

Strona 50

Page 53 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. FMT_SMR.1.1 The TSF shall maintain the roles [assignment: Genera

Strona 51

Page 54 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. 5.1.7 Class FTP: Trusted path/channels FTP_ITC.1 Inter-TSF tru

Strona 52

Page 55 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. 5.2 Minimum Strength of Function Claim The minimum strength leve

Strona 53

Page 56 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. 5.4 Security Requirements for the Environment There are no secu

Strona 54

Page 57 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. 6 TOE Summary Specification This chapter describes the TOE secur

Strona 55

Page 58 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. SF.AUDIT SF.I&A SF.DOC_ACC SF.SEC_MNG SF.CE_OPE_LOCK SF.CIP

Strona 56 - Page 56 of 100

Page 59 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. 6.1.1.1 Audit logs generation The TOE generates the audit logs

Strona 57 - 6 TOE Summary Specification

Page 6 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. 8.2 Security Requirements Rationale...

Strona 58

Page 60 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Communication with trusted IT product Communication IP address C

Strona 59

Page 61 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. 6.1.2.1 User Identification and Authentication The TOE displays

Strona 60

Page 62 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. ", the TOE resets the consecutive number of times of failur

Strona 61

Page 63 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. (2) Registerable Password length: For General Users No fewer tha

Strona 62

Page 64 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. 6.1.3.2 Operations on Document Data by File Administrator The T

Strona 63

Page 65 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. File Users. The TOE allows the login General Users to perform th

Strona 64

Page 66 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. 6.1.4.4 Management of General User Information Management of Ge

Strona 65

Page 67 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Table 31: List of Administrator for Machine Control Data Machin

Strona 66

Page 68 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. 6.1.6.1 Encryption of Document Data The TOE encrypts the data w

Strona 67

Page 69 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. 6.1.7.3 Sending by E-mail from TOE When sending Document Data b

Strona 68

Page 7 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. List of Figures Figure 1: Environment for usage of TOE...

Strona 69 - 6.3 Assurance Measures

Page 70 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. AGD depend on the region in which the TOE is sold. One of [Japan

Strona 70 - Page 70 of 100

Page 71 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Table 33: Assurance Requirements and Assurance Measures for EAL

Strona 71

Page 72 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Assurance classes Assurance components Assurance measures AGD: G

Strona 72

Page 73 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Assurance classes Assurance components Assurance measures [Engl

Strona 73

Page 74 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Assurance classes Assurance components Assurance measures [Engl

Strona 74

Page 75 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Assurance classes Assurance components Assurance measures ALC: L

Strona 75

Page 76 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. 7 PP Claims This ST does not claim conformance to any PP.

Strona 76 - 7 PP Claims

Page 77 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. 8 Rationale This chapter describes the rationale for the securit

Strona 77 - 8 Rationale

Page 78 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. By OE.ADMIN, Responsible Manager for MFP selects trusted persons

Strona 78

Page 79 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Administrator. The Machine Administrator detects afterwards whet

Strona 79

Page 8 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Table 34: Relation between Security Environment and Security Obje

Strona 80

Page 80 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Table 35: Relation between Security Objectives and Functional R

Strona 81

Page 81 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Table 35 shows that each TOE security functional requirement co

Strona 82

Page 82 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. O.I&A User Identification and Authentication The details of

Strona 83

Page 83 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. the users, and each security attribute associated with the subje

Strona 84

Page 84 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. • Machine Administrators to inquire and set the Number of Attem

Strona 85

Page 85 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. the TOE. For this, FCS_CKM.1 generates the encryption keys at th

Strona 86

Page 86 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. a) Check the integrity of MFP Control Software To accomplish O.

Strona 87

Page 87 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. 8.2.3 Dependencies of Security Functional Requirements On the T

Strona 88

Page 88 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. TOE Security Functional Requirements Dependencies claimed by CC

Strona 89

Page 89 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. The TOE consists of both hardware and software, and there are no

Strona 90

Page 9 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. 1 ST Introduction 1.1 ST Identification This section identifies t

Strona 91

Page 90 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. Functional Requirements Bypass Prevention De-activation Preventi

Strona 92

Page 91 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. 8.2.5.3 Tampering Prevention Since FPT_SEP.1 prevents interferen

Strona 93

Page 92 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. 8.3 TOE Summary Specification Rationale 8.3.1 Rationale for TO

Strona 94

Page 93 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. FAU_SAR.1 (Audit review), FAU_SAR.2 (Restricted audit review)

Strona 95

Page 94 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. FDP_ACC.1 (Subset access control), FDP_ACF.1 (Security attribut

Strona 96

Page 95 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. security attributes and maintains those attributes. Therefore, F

Strona 97

Page 96 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. FIA_UID.2 (User identification before any action) FIA_UID.2 req

Strona 98

Page 97 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. SF.SEC_MNG provides the function to set the "Document Data

Strona 99

Page 98 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. FPT_SEP.1 (TSF domain separation) FPT_SEP.1 requires that the TS

Strona 100 - 8.4 PP Claims Rationale

Page 99 of 100 Copyright (c) 2008, 2009 RICOH COMPANY, LTD. All Rights Reserved. 8.3.3 Rationale for Assurance Measures The documents, which are

Komentarze do niniejszej Instrukcji

Brak uwag