
Fuji Xerox C2265/C2263
Security Target
- 56 -
Copyright
2016 by Fuji Xerox Co., Ltd
Table 22 FAX Access Control SFP
Object
Attribute(s)
Operation
Subject
Access control rule
D.DOC +FAXIN
Read
- Retrieve the
document data in
Mailbox
U.USER
Denied, except for his/her own
documents
- When the owner identifier of
D.DOC matches the user
identifier, retrieval operation is
permitted.
+FAXOUT Read
- Send the document
data to fax
U.USER
Denied, except for his/her own
documents
FDP_ACC.1 (g)
Subset access control
Hierarchical to:
No other components.
Dependencies: FDP_ACF.1
Security attribute based access control
FDP_ACC.1.1 (g)
The TSF shall enforce the [assignment: access control SFP] on
[assignment: list of subjects, objects, and operations among subjects
and objects covered by the SFP].
[assignment: access control SFP]
- DSR Access Control SFP in Table 23
[assignment: list of subjects, objects, and operations among subjects
and objects covered by the SFP].
- the list of subjects, objects, and operations among subjects and
objects covered by the DSR Access Control SFP in Table 23
Table 23 DSR Access Control SFP
Object
Attribute(s)
Operation
Subject
Access control rule
D.DOC +DSR
Read
- Retrieve the
document data in
Mailbox
U.USER
Denied, except (1) for his/her
own documents or (2) if
authorized by another role or
mechanism if such functions
are provided by a conforming
TOE
- When the owner identifier of
D.DOC matches the user
identifier, retrieval operation is
permitted.