Dell C7765DN MFP Color Laser Printer User Manual
Page 84
Dell C7765dn Security Target
- 80 -
from referring to / changing the settings related to System Administrator’s Security Management
(TSF_FMT). This function can prevent setting change by an attacker who is impersonating CE.
(1) FMT_MOF.1 Management of security functions behavior
FMT_MTD.1 Management of TSF data
FMT_SMF.1 Specification of management functions
The TOE provides a user interface which allows only the authenticated system administrator to
refer to / change (enable/disable) the TOE settings related to Customer Engineer Operation
Restriction from the control panel and Configuration Web Tool.
With these functions, the required security management functions are provided.
(2) FMT_SMR.1 Security roles
The system administrator's role is maintained and the role is associated with a system
administrator.
7.1.6. Security Audit Log (TSF_FAU)
According to Security Audit Log setting which is configured by a system administrator using the
system administrator mode, the important events of the TOE such as device failure, configuration
change, and user operation are traced and recorded based on when and who operated what function.
All the TOE users are the targets of this audit log.
(1) FAU_GEN.1 Audit data generation
It is assured that the defined auditable event is recorded in the audit log.
Table 29 shows the details of the audit log data.
Table 29: Details of Security Audit Log Data
Logged Events
Description
Status
Change in Device Status
System Status
Started normally (cold boot)
-
Started normally (warm boot)
The auditable events are recorded with the following fixed size entries:
-
Log ID: consecutive numbers as an audit log identifier (1 - 60000)
-
Date: date data (yyyy/mm/dd, mm/dd/yyyy, or dd/mm/yyyy)
-
Time: time data (hh:mm:ss)
-
Logged Events: event name (arbitrary characters of up to 32 digits)
-
User Name: user name (arbitrary characters of up to 32 digits)
-
Description: description on events
(arbitrary characters of up to 32 digits, see below for details)
-
Status: status or result of event processing
(arbitrary characters of up to 32 digits, see below for details)
-
Optionally Logged Items: additional information recorded to audit log
(except common record items)