Fuji Xerox C2265/C2263 Security Target
- 120 - Copyright
2016 by Fuji Xerox Co., Ltd
7.1.6. Security Audit Log (TSF_FAU)
According to Security Audit Log setting which is configured by a system administrator using
the system administrator mode, the important events of the TOE such as device failure,
configuration change, and user operation are traced and recorded based on when and who
operated what function. All the TOE users are the targets of this audit log.
(1) FAU_GEN.1 Audit data generation
It is assured that the defined auditable event is recorded in the audit log.
Table 47 shows the details of the audit log.
Table 47 Details of Security Audit Log
Logged Events Description Status
Change in Device Status
System Status
Started normally(cold boot)
-
Started normally(warm boot)
Shutdown requested
User operation(Local) Start/End
Self Test Successful/Failed
User Authentication
Login/Logout
Login Successful, Failed(Invalid
UserID), Failed(Invalid
Password), Failed
Logout
Locked System Administrator
Authentication
-
(Number of authentication
failures recorded)
Detected continuous
Authentication Fail
Change in Audit Policy
Audit Policy Audit Log Enable/Disable
Job Status
The auditable events are recorded with the following fixed size entries:
Log ID: consecutive numbers as an audit log identifier (1 - 60000)
Date: date data (yyyy/mm/dd, mm/dd/yyyy, or dd/mm/yyyy)
Time: time data (hh:mm:ss)
Logged Events: event name (arbitrary characters of up to 32 digits)
User Name: user name (arbitrary characters of up to 32 digits)
Description: description on events
(arbitrary characters of up to 32 digits, see below for details)
Status: status or result of event processing
(arbitrary characters of up to 32 digits, see below for details)
Optionally Logged Items: additional information recorded to audit log(subject identity, etc.)