HP Inc.
HP LaserJet Enterprise MFP M527 Series,
Color LaserJet Enterprise MFP M577 Series, and
PageWide Enterprise Color MFP 586 Series
Firmware with Jetdirect Inside Security Target
Version: 2.0 Copyright © 2008-2016 by atsec information security corporation and HP Inc. Page 87 of 98
Last update: 2016-06-07 or its wholly owned subsidiaries
Inactivity timeout 7.1.6.1
The TOE supports an inactivity timeout for Control Panel sessions. If a logged in user is inactive for
longer than the specified period, the user is automatically logged off of the TOE. The inactivity period is
managed by the administrator via EWS (HTTP) or WS* web services. Only one inactivity period setting
exists per TOE.
This section maps to the following SFR:
FTA_SSL.3
Automatic logout 7.1.6.2
The administrator can optionally configure the TOE to automatically sign users out after starting a job.
The user can be signed out immediately or with a delay of 10 seconds during which time the user can
select to remain signed in. If enabled, after initiating a job, the TOE displays a screen informing the user
of job termination immediately or in 10 seconds. If given the option and the user chooses to remain
signed in, the Inactivity Timeout timer is started.
This section maps to the following SFR:
FTA_SSL.3
7.1.7 Trusted channel communication and certificate management
Shared-medium communications (i.e., Ethernet) between the TOE and other trusted IT products use a
trusted channel mechanism to protect the communications from disclosure and modification. The TOE
also ensures the cryptographic operations are validated during policy processing such as validating digital
signatures or encrypting and decrypting data. The following table provides a list of the mechanism(s)
used to protect these channels and the channels protected by the mechanism(s).
Email connections (SMTP gateway)
EWS (HTTP) connections (including web
browser & certificate upload)
Windows domain controller (Kerberos)
connections
Administrative Computer & Network
Client Computer
Save to Network Folder connections (SMB,
FTP)
Save to SharePoint connections (flow models
only)