Xerox Multi-Function Device Security Target
32
Copyright
2013 Xerox Corporation. All rights reserved.
Threats. Policies, and
Assumptions
Summary
Objectives and rationale
A.ACCESS.MANAGED
The TOE environment
provides protection
from unmanaged
access to the physical
components and data
interfaces of the TOE.
OE.PHYSICAL.MANAGED
establishes a protected physical
environment for the TOE
A.ADMIN.TRAINING
Administrators are
aware of and trained to
follow security policies
and procedures
OE.ADMIN.TRAINED establishes
responsibility of the TOE Owner to
provide appropriate Administrator
training.
A.ADMIN.TRUST
Administrators do not
use their privileged
access rights for
malicious purposes.
OE.ADMIN.TRUST establishes
responsibility of the TOE Owner to
have a trusted relationship with
Administrators.
A.USER.TRAINING
TOE Users are aware
of and trained to follow
security policies and
procedures
OE.USER.TRAINED establishes
responsibility of the TOE Owner to
provide appropriate User training.