Page 61 of 93
Copyright (c) 2011 RICOH COMPANY, LTD. All rights reserved.
of fax reception, and repair request notification] on behalf of the user to be performed before
the user is identified (refinement: authentication of MFP administrator and supervisor with
Basic Authentication, and identification of normal user with external authentication server).
FIA_UID.1.2(b) The TSF shall require each user to be successfully identified before allowing other
TSF-mediated actions on behalf of that user.
FIA_UID.2 User identification before action
Hierarchical to: FIA_UID.1Timing of identification
Dependencies: No dependencies.
FIA_UID.2.1 The TSF shall require each user to be successfully identified (refinement: identification of a
person who intends to use the TOE from RC Gate communication interface) before allowing
other TSF-mediated actions on behalf of that user.
FIA_USB.1 User-subject binding
Hierarchical to: No other components.
Dependencies: FIA_ATD.1 User attribute definition
FIA_USB.1.1 The TSF shall associate the following user security attributes with subjects acting on the behalf
of that user: [assignment: login user name of normal user, login user name of MFP
administrator, available function list, and user role].
FIA_USB.1.2 The TSF shall enforce the following rules on the initial association of user security attributes
with subjects acting on the behalf of users: [assignment: rules for the initial association of
attributes listed in Table 25].
Table 25 : Rules for Initial Association of Attributes
Users Subjects User Security Attributes
Normal user Normal user process - Login user name of normal user
- User role
- Available function list
Supervisor Supervisor process - User role
MFP administrator MFP administrator process - Login user name of MFP administrator
- User role
RC Gate RC Gate process - User role
FIA_USB.1.3 The TSF shall enforce the following rules governing changes to the user security attributes
associated with subjects acting on the behalf of users: [assignment: none].
6.1.5 Class FMT: Security management
FMT_MSA.1(a) Management of security attributes
Hierarchical to: No other components.