Xerox  Multi-Function Device Security Target 
 
29 
Copyright
 2013 Xerox Corporation. All rights reserved. 
Threats. Policies, and 
Assumptions 
OE.USER.AUTHENTICATED 
establishes  alternative (remote) 
means for user identification and 
authentication as the basis for 
authorization  
User Document Data 
may be altered by 
unauthorized persons 
O.DOC.NO_ALT protects D.DOC 
from unauthorized alteration 
O.USER.AUTHORIZED 
establishes user identification and 
authentication as the basis for 
authorization 
OE.USER.AUTHORIZED 
establishes responsibility of the 
TOE Owner to appropriately grant 
authorization 
OE.USER.AUTHENTICATED 
establishes alternative (remote) 
means for user identification and 
authentication as the basis for 
authorization 
User Function Data 
may be altered by 
unauthorized persons 
O.FUNC.NO_ALT protects 
D.FUNC from unauthorized 
alteration 
O.USER.AUTHORIZED 
establishes user identification and 
authentication as the basis for 
authorization 
OE.USER.AUTHORIZED 
establishes responsibility of the 
TOE Owner to appropriately grant 
authorization 
OE.USER.AUTHENTICATED 
establishes alternative (remote) 
means for user identification and 
authentication as the basis for 
authorization 
TSF Protected Data 
may be altered by 
unauthorized persons 
O.PROT.NO_ALT protects 
D.PROT from unauthorized 
alteration 
O.USER.AUTHORIZED 
establishes user identification and 
authentication as the basis for 
authorization