
Fuji Xerox C2265/C2263
Security Target
- 96 -
Copyright
2016 by Fuji Xerox Co., Ltd
Objectives
SFRs
O.DOC.NO
_DIS
O.DOC.NO
_AL
T
O.FUNC.NO_AL
T
O.PROT.NO_AL
T
O.CONF
.NO_DIS
O.CONF
.NO_AL
T
O.USER.AUT
HORIZED
O.INTERF
ACE.MANAGED
O.SOFTW
A
RE.VERIFIE
D
O.AUDIT.
LO
GG
ED
O.AUDIT
_
ST
ORAGE.PROTECTED
O.AUDIT
_
ACCESS
.AUTHO
RIZED
O.CIPH
ER
FMT_MSA.3 (g)
FMT_MSA.3 (h)
FMT_MTD.1 (a)
FMT_MTD.1 (b)
FMT_SMF.1
FMT_SMR.1
FPT_FDI_EXP.1
FPT_STM.1
FPT_TST.1
FTA_SSL.3
FTP_ITC.1
Table 41 Security Objectives to SFR Rationale
Security Objectives
Security Functional Requirements Rationale
O.AUDIT.LOGGED
(Logging and
authorized access to
audit events)
O.AUDIT.LOGGED is the objective to prevent unauthorized disclosure and
alteration by creating and maintaining the event logs related to the TOE
usage and security. This security objective can be realized by satisfying the
following security functional requirement:
By FAU_GEN.1, the security audit log data are generated for the auditable
events: (However, audit is unnecessary for the following functional
requirements for each reason described below.)
- FAU_STG.4: The total number of security audit log data events is fixed.
The data are stored and updated automatically.
- FCS_CKM.1: When cryptographic key generation fails, a system error
occurs at the time of booting of the MFD.
- FCS_COP.1: An encryption failure is monitored as job status.
- FMT_MSA.3: No change in default and rules.
By FAU_GEN.2 and FIA_UID.1, each auditable event is associated with the