
Fuji Xerox ApeosPort-II C4300(AP)Series Security Kit for Asia Pacific Security Target V1.01
- 17 -
Types of used document data when using facsimile function:
- Bitmap data of which use is finished when sending of the stored document data is
finished in sending a facsimile.
- Bitmap data of which use is finished when printing of the stored document data is
finished in receiving a facsimile.
- Bitmap data of which use is finished when deletion of the stored document data is
instructed by general user from the control panel.
- Bitmap data of which use is finished when cancel is instructed by general user
from the control panel during scanning for sending a facsimile.
R.CONFDATA
(TOE setting data)
[Asset contents]
- Setting for HDD overwriting function for residual data
- Setting for using password
- Key-operator’s password
- Setting for customer-engineer operation restriction function
- Setting for HDD data encryption function
- Cryptographic seed key for data stored on the hard disk drive
- Access denial due to failure in authentication of key-operator’s ID
[Storage mediums]
The following are stored on NVRAM*:
- Setting for HDD overwriting function for residual data
- Setting for using password
- Key-operator’s password
- Setting for customer-engineer operation restriction function
- Access denial due to failure in authentication of key-operator’s ID
The following are stored on SEEPROM*:
- Setting for HDD data encryption function
- Cryptographic seed key for data stored on the hard disk drive
* Although data other than those described in Table 3, such as setting data for power-saving time,
are stored on NVRAM and SEEPROM of MFP, these data are not the assets to be protected
because they are not related to the security functions of TOE.
2.7. Functions of TOE
2.7.1.
Security Functions of TOE
TOE provides the following security functions.
Function classification Description
HDD overwriting function for
residual data
Function to perform specific-pattern overwriting and erasing of the used
document data stored on the hard disk drive of MFP.
When the overwriting of the used document data is not finished such as
due to power shutdown, the used document data is automatically
overwritten and erased according to the “setting for HDD overwriting
function for residual data” at the next power-on.
HDD data encryption function Function to encrypt document data stored on the hard disk drive of MFP.
Key-operator authentication
function
Function to identify and authenticate key operator and to enable
only the key operator to make settings on TOE setting data.
Denies the authentication when authentication fails the set number of
times.
Customer-engineer operation
restriction function
Used when customer engineer refers to / changes TOE setting data.
Function to make the only-for-customer-engineer interface unavailable.
This function can be set by key operator.
By enabling this function, attacker who pretends to be a customer engineer
becomes unable to refer to / change TOE setting data using the interface
only for customer engineer.
Komentáře k této Příručce