HP Inc.
HP LaserJet Enterprise MFP M527 Series,
Color LaserJet Enterprise MFP M577 Series, and
PageWide Enterprise Color MFP 586 Series
Firmware with Jetdirect Inside Security Target
Version: 2.0 Copyright © 2008-2016 by atsec information security corporation and HP Inc. Page 25 of 98
Last update: 2016-06-07 or its wholly owned subsidiaries
authentication. The TOE will accept print jobs from any user of a client computer where
the client computer has successfully authenticated with the TOE.
Security attributes: User Role (defined by IPsec/Firewall service template) and
User Identifier (defined by IP address)
o Administrative Computers – Computers (U.ADMINISTRATOR entities) that can
successfully authenticate to the TOE's administrative interfaces (e.g., EWS/HTTP, OXPd,
WS*, SNMP) using IPsec and mutual authentication. An Administrative Computer may
also connect to the TOE as a Network Client Computer (i.e., the Administrative Computer
can send print jobs as a U.NORMAL user through the PJL Interface on port 9100).
Security attributes: User Role (defined by IPsec/Firewall service template) and
User Identifier (defined by IP address)
Objects 1.5.4.2
Objects are passive entities in the TOE that contain or receive information, and upon which Subjects
perform Operations. Objects are equivalent to TOE Assets. There are three types of Objects:
User Data
TSF Data
Functions
1.5.4.2.1 User Data
User Data are data created by and for Users and do not affect the operation of the TOE Security
Functionality (TSF). This type of data is comprised of two objects:
User Document Data
User Function Data
User Document Data consists of the information contained in a user's document. This
includes the original document itself in hardcopy or electronic form, image data, or
residually-stored data created by the HCD while processing an original document and
printed hardcopy output.
User Function Data are the information about a user's document or job to be processed
by the TOE.
Table 5: User Data
User Data objects include:
Fax jobs:
o Receive Fax jobs – Fax jobs received by the TOE over the analog fax phone line where
the connection is initiated by another fax device.
o Fax Polling Receive jobs – Fax jobs received by the TOE over the analog fax phone
line where the connection is initiated by the TOE via the Fax Polling Receive function.
o Send Fax Jobs – Fax jobs being sent by the TOE over the analog fax phone line. (The
Send Fax functionality is available in the evaluated configuration, but the PC Fax Send
feature is disabled in the evaluated configuration.)