Xerox WorkCentre 5135/5150 Multifunction ... - Common Criteria
Xerox WorkCentre 5135/5150 Multifunction ... - Common Criteria
Xerox WorkCentre 5135/5150 Multifunction ... - Common Criteria
Create successful ePaper yourself
Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.
<strong>Xerox</strong> <strong>WorkCentre</strong> <strong>5135</strong>/<strong>5150</strong><br />
<strong>Multifunction</strong> Systems Security Target<br />
Interface (LUI) with keypad, a document scanner, a document feeder and<br />
a document output.<br />
1.3.2. Logical Scope of the TOE<br />
The logical scope of the TOE includes all software and firmware that are<br />
installed on the product (see Table 2). The TOE logical boundary is<br />
composed of the security functions provided by the product.<br />
The following security functions are controlled by the TOE:<br />
<br />
<br />
<br />
<br />
<br />
<br />
<br />
<br />
<br />
<br />
Image Overwrite (TSF_IOW)<br />
Authentication (TSF_ AUT)<br />
Network Identification (TSF_NET_ID)<br />
Security Audit (TSF_FAU).<br />
Cryptographic Operations (TSF_FCS)<br />
Management Data Protection – SSL (TSF_FDP_SSL)<br />
User Data Protection – IP Filtering (TSF_FDP_FILTER)<br />
Information Flow Security (TSF_ FLOW)<br />
Security Management (TSF_FMT)<br />
User Data Protection - AES (TSF_EXP_UDE)<br />
1.3.2.1. Image Overwrite (TSF_IOW)<br />
The TOE has an “Image Overwrite” function that overwrites files created<br />
during the printing, network scan, scan-to-email, and LanFax processes.<br />
This overwrite process is implemented in accordance with DoD 5200.28-M<br />
and will be activated at the completion of each print, network scan, scan to<br />
e-mail, or LanFax job, once the MFD is turned back on after a power<br />
failure or on demand of the MFD system administrator.<br />
The TOE has an “Image Overwrite” function that overwrites files created<br />
during the embedded fax process. This overwrite process is implemented<br />
as a single-pass zeroization of the embedded fax card flash memory and<br />
will be activated at the completion of each embedded fax job, once the<br />
MFD is turned back on after a power failure or on demand of the MFD<br />
system administrator. The embedded fax card flash memory overwrite is<br />
not compliant with DoD 5200.28-M. LanFax jobs are overwritten on the<br />
hard disk after the image is transferred from the Network Controller to<br />
Copy Controller, and zeroized on the fax card flash memory once the<br />
image has been sent. The Fax mailbox and dial directory are only<br />
zeroized when the administrator commands a full On-Demand Image<br />
Overwrite (ODIO) operation.<br />
User image files associated with the Copy/Print, Store and Reprint feature<br />
may be stored long term for later reprinting. When a job is selected for<br />
reprint, the stored job is resubmitted to the system. Temporary files<br />
13<br />
Copyright 2009 <strong>Xerox</strong> Corporation, All rights reserved