beautypg.com

Dell C7765DN MFP Color Laser Printer User Manual

Page 84

background image

Dell C7765dn Security Target

- 80 -

from referring to / changing the settings related to System Administrator’s Security Management

(TSF_FMT). This function can prevent setting change by an attacker who is impersonating CE.

(1) FMT_MOF.1 Management of security functions behavior

FMT_MTD.1 Management of TSF data

FMT_SMF.1 Specification of management functions

The TOE provides a user interface which allows only the authenticated system administrator to

refer to / change (enable/disable) the TOE settings related to Customer Engineer Operation

Restriction from the control panel and Configuration Web Tool.

With these functions, the required security management functions are provided.

(2) FMT_SMR.1 Security roles

The system administrator's role is maintained and the role is associated with a system

administrator.

7.1.6. Security Audit Log (TSF_FAU)

According to Security Audit Log setting which is configured by a system administrator using the

system administrator mode, the important events of the TOE such as device failure, configuration

change, and user operation are traced and recorded based on when and who operated what function.

All the TOE users are the targets of this audit log.

(1) FAU_GEN.1 Audit data generation

It is assured that the defined auditable event is recorded in the audit log.

Table 29 shows the details of the audit log data.

Table 29: Details of Security Audit Log Data

Logged Events

Description

Status

Change in Device Status

System Status

Started normally (cold boot)

-

Started normally (warm boot)

The auditable events are recorded with the following fixed size entries:
-

Log ID: consecutive numbers as an audit log identifier (1 - 60000)

-

Date: date data (yyyy/mm/dd, mm/dd/yyyy, or dd/mm/yyyy)

-

Time: time data (hh:mm:ss)

-

Logged Events: event name (arbitrary characters of up to 32 digits)

-

User Name: user name (arbitrary characters of up to 32 digits)

-

Description: description on events
(arbitrary characters of up to 32 digits, see below for details)

-

Status: status or result of event processing
(arbitrary characters of up to 32 digits, see below for details)

-

Optionally Logged Items: additional information recorded to audit log
(except common record items)