19.06.2014 Views

Xerox WorkCentre 5135/5150 Multifunction ... - Common Criteria

Xerox WorkCentre 5135/5150 Multifunction ... - Common Criteria

Xerox WorkCentre 5135/5150 Multifunction ... - Common Criteria

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

<strong>Xerox</strong> <strong>WorkCentre</strong> <strong>5135</strong>/<strong>5150</strong><br />

<strong>Multifunction</strong> Systems Security Target<br />

Interface (LUI) with keypad, a document scanner, a document feeder and<br />

a document output.<br />

1.3.2. Logical Scope of the TOE<br />

The logical scope of the TOE includes all software and firmware that are<br />

installed on the product (see Table 2). The TOE logical boundary is<br />

composed of the security functions provided by the product.<br />

The following security functions are controlled by the TOE:<br />

<br />

<br />

<br />

<br />

<br />

<br />

<br />

<br />

<br />

<br />

Image Overwrite (TSF_IOW)<br />

Authentication (TSF_ AUT)<br />

Network Identification (TSF_NET_ID)<br />

Security Audit (TSF_FAU).<br />

Cryptographic Operations (TSF_FCS)<br />

Management Data Protection – SSL (TSF_FDP_SSL)<br />

User Data Protection – IP Filtering (TSF_FDP_FILTER)<br />

Information Flow Security (TSF_ FLOW)<br />

Security Management (TSF_FMT)<br />

User Data Protection - AES (TSF_EXP_UDE)<br />

1.3.2.1. Image Overwrite (TSF_IOW)<br />

The TOE has an “Image Overwrite” function that overwrites files created<br />

during the printing, network scan, scan-to-email, and LanFax processes.<br />

This overwrite process is implemented in accordance with DoD 5200.28-M<br />

and will be activated at the completion of each print, network scan, scan to<br />

e-mail, or LanFax job, once the MFD is turned back on after a power<br />

failure or on demand of the MFD system administrator.<br />

The TOE has an “Image Overwrite” function that overwrites files created<br />

during the embedded fax process. This overwrite process is implemented<br />

as a single-pass zeroization of the embedded fax card flash memory and<br />

will be activated at the completion of each embedded fax job, once the<br />

MFD is turned back on after a power failure or on demand of the MFD<br />

system administrator. The embedded fax card flash memory overwrite is<br />

not compliant with DoD 5200.28-M. LanFax jobs are overwritten on the<br />

hard disk after the image is transferred from the Network Controller to<br />

Copy Controller, and zeroized on the fax card flash memory once the<br />

image has been sent. The Fax mailbox and dial directory are only<br />

zeroized when the administrator commands a full On-Demand Image<br />

Overwrite (ODIO) operation.<br />

User image files associated with the Copy/Print, Store and Reprint feature<br />

may be stored long term for later reprinting. When a job is selected for<br />

reprint, the stored job is resubmitted to the system. Temporary files<br />

13<br />

Copyright 2009 <strong>Xerox</strong> Corporation, All rights reserved

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!