Xerox Multi-Function Device Security Target
29
Copyright
2013 Xerox Corporation. All rights reserved.
Threats. Policies, and
Assumptions
Summary
Objectives and rationale
OE.USER.AUTHENTICATED
establishes alternative (remote)
means for user identification and
authentication as the basis for
authorization
T.DOC.ALT
User Document Data
may be altered by
unauthorized persons
O.DOC.NO_ALT protects D.DOC
from unauthorized alteration
O.USER.AUTHORIZED
establishes user identification and
authentication as the basis for
authorization
OE.USER.AUTHORIZED
establishes responsibility of the
TOE Owner to appropriately grant
authorization
OE.USER.AUTHENTICATED
establishes alternative (remote)
means for user identification and
authentication as the basis for
authorization
T.FUNC.ALT
User Function Data
may be altered by
unauthorized persons
O.FUNC.NO_ALT protects
D.FUNC from unauthorized
alteration
O.USER.AUTHORIZED
establishes user identification and
authentication as the basis for
authorization
OE.USER.AUTHORIZED
establishes responsibility of the
TOE Owner to appropriately grant
authorization
OE.USER.AUTHENTICATED
establishes alternative (remote)
means for user identification and
authentication as the basis for
authorization
T.PROT.ALT
TSF Protected Data
may be altered by
unauthorized persons
O.PROT.NO_ALT protects
D.PROT from unauthorized
alteration
O.USER.AUTHORIZED
establishes user identification and
authentication as the basis for
authorization