Xerox Multi-Function Device Security Target
40
Copyright
2013 Xerox Corporation. All rights reserved.
Any User who is authorized to establish a connection with the TOE through
the ethernet port is able to perform the following TOE functions as defined in
the IEEE Std. 2600.2-2009 SFR Packages in Section 12.3:
Print (PRT).
Any host / authorized user on the network can submit
jobs,
however,
release
of
jobs
submitted
by
unknown/unauthenticated users to the hardcopy output handler is
dependent on the system administrator defined policy.
Fax (faxOUT).
Any host / authorized user on the network can submit
LanFax jobs.
6.3.
Security Functional
Requirements
The TOE satisfies the SFRs identified in Table 23. The rest of this section
contains a description of each component and any related dependencies.
Table 23: TOE security functional requirements
Functional Component ID
Functional Component Name
FAU_GEN.1
Audit data generation
FAU_GEN.2
User identity association
FAU_STG.1
Protected audit trail storage
FAU_STG.4
Prevention of audit data loss
FCS_COP.1
Cryptographic operation
FCS_CKM.1
Cryptographic key generation
FCS_CKM.2
Cryptographic key distribution
FCS_CKM.4
Cryptographic key destruction
FDP_ACC.1
Subset access control
FDP_ACF.1
Security attribute based access control
FDP_IFC.1
Subset information flow control
FDP_IFF.1
Simple security attributes
FDP_RIP.1
Subset residual information protection
FIA_ATD.1
User attribute definition
FIA_UAU.1
Timing of authentication
FIA_UAU.7
Protected authentication feedback
FIA_UID.1
Timing of identification