Fuji Xerox C2265/C2263 Security Target
- 58 - Copyright
2016 by Fuji Xerox Co., Ltd
FDP_ACF.1.2 (a) The TSF shall enforce the following rules to determine if an operation
among controlled subjects and controlled objects is allowed:
[assignment: rules governing access among controlled subjects and
controlled objects using controlled operations on controlled objects].
[assignment: rules governing access among controlled subjects and
controlled objects using controlled operations on controlled objects].
- rules specified in the Common Access Control SFP in Table 16
governing access among controlled users as subjects and
controlled objects using controlled operations on controlled
objects
FDP_ACF.1.3 (a) The TSF shall explicitly authorize access of subjects to objects based
on the following additional rules: [assignment: rules, based on
security attributes, that explicitly authorize access of subjects to
objects].
[assignment: rules, based on security attributes, that explicitly
authorise access of subjects to objects].
- In the U.ADMINISTRATOR process, operation to delete the
documents in all Mailbox.
- In the U.ADMINISTRATOR process, operation to delete the
incomplete document data at Copy, Scan, Fax, Print job is permitted
by Job Deletion function.
FDP_ACF.1.4 (a) The TSF shall explicitly deny access of subjects to objects based on
the following additional rules: [assignment: rules, based on security
attributes, that explicitly deny access of subjects to objects].
[assignment: rules, based on security attributes, that explicitly deny
access of subjects to objects].
- none
FDP_ACF.1 (b) Security attribute based access control
Hierarchical to: No other components.
Dependencies: FDP_ACC.1 Subset access control
FMT_MSA.3 Static attribute initialization
FDP_ACF.1.1 (b) The TSF shall enforce the [assignment: access control SFP] to objects
based on the following: [assignment: list of subjects and objects
controlled under the indicated SFP, and for each, the SFP-relevant