Page 61 of
93
Copyright (c) 2011 RICOH COMPANY, LTD. All rights reserved.
of fax reception, and repair request notification] on behalf of the user to be performed before
the user is identified (refinement: authentication of MFP administrator and supervisor with
Basic Authentication, and identification of normal user with external authentication server).
FIA_UID.1.2(b) The TSF shall require each user to be successfully identified before allowing other
TSF-mediated actions on behalf of that user.
FIA_UID.2
User identification before action
Hierarchical to:
FIA_UID.1Timing of identification
Dependencies: No
dependencies.
FIA_UID.2.1
The TSF shall require each user to be successfully identified (refinement: identification of a
person who intends to use the TOE from RC Gate communication interface) before allowing
other TSF-mediated actions on behalf of that user.
FIA_USB.1 User-subject
binding
Hierarchical to:
No other components.
Dependencies:
FIA_ATD.1 User attribute definition
FIA_USB.1.1
The TSF shall associate the following user security attributes with subjects acting on the behalf
of that user: [assignment: login user name of normal user, login user name of MFP
administrator, available function list, and user role].
FIA_USB.1.2
The TSF shall enforce the following rules on the initial association of user security attributes
with subjects acting on the behalf of users: [assignment: rules for the initial association of
attributes listed in Table 25].
Table 25 : Rules for Initial Association of Attributes
Users
Subjects
User Security Attributes
Normal user
Normal user process
- Login user name of normal user
- User role
- Available function list
Supervisor
Supervisor process
- User role
MFP administrator
MFP administrator process
- Login user name of MFP administrator
- User role
RC Gate
RC Gate process
- User role
FIA_USB.1.3
The TSF shall enforce the following rules governing changes to the user security attributes
associated with subjects acting on the behalf of users: [assignment: none].
6.1.5
Class FMT: Security management
FMT_MSA.1(a) Management of security attributes
Hierarchical to:
No other components.