Page 60 of 91
Copyright (c) 2012 RICOH COMPANY, LTD. All rights reserved.
FMT_SMR.1 Security roles
FMT_SMF.1 Specification of Management Function
FMT_MSA.1.1(a) The TSF shall enforce the [assignment: document access control SFP] to restrict the ability to
[selection: query, modify, delete, [assignment: newly create]] the security attributes
[assignment: security attributes in Table 25] to [assignment: the user roles with operation
permission in Table 25].
Table 25 : User Roles for Security Attributes (a)
Security Attributes Operations User Roles
with Operation Permission
Query,
modify,
delete,
newly create
MFP administrator
Login user name of normal user
for Basic Authentication
Query
Normal user who owns the applicable
login user name
Login user name of normal user
for External Authentication
Query,
modify,
delete,
newly create
MFP administrator
Login user name of supervisor
Query,
modify
Supervisor
Newly create MFP administrator
Query,
modify
MFP administrator who owns the
applicable login user name
Login user name of MFP administrator
Query Supervisor
Document data attribute No operation permitted None
Document user list
[when document data attributes are
(+PRT), (+SCN), (+CPY), and
(+FAXOUT)]
No operation permitted None
Document user list
[when document data attribute is (+DSR)]
Query,
modify
MFP administrator,
applicable normal user who stored the
document data
Document user list
[when document data attribute is
(+FAXIN)]
Query,
modify
MFP administrator
FMT_MSA.1(b)Management of security attributes
Hierarchical to: No other components.