Specifications
Samsung MFP Security Kit Type_B V1.5 Security Target
14
Copyright
2010 Samsung Electronics Co., Ltd., All rights reserved
Image Overwrite
User data created during the printing, network scanning, scan-to-email,
or scan-to-server processes is immediately recorded on the hard disk
drive.
One of the core TOE functionalities is an image overwrite function for
clearly erasing image data generated during copying, printing, network
scanning, scan-to-email, and/or scan-to-server tasks. The image data is
completely overwritten from one time to seven times. There are two
supported image overwrite techniques. One is Automatic Image
Overwrite; the other is Manual Image Overwrite. The Automatic Image
Overwrite automatically carries out overwriting operations on temporary
image files at the end of each job or on the files on the hard disk drive
when a user initiates a delete operation. The Manual Image Overwrite
function overwrites all stored files on the hard disk drive (except some
system files), and the function should only be manually performed by a
local administrator.
The separation of fax and network
A fax image can be copied from fax memory to network card memory
only when the fax image has a standard format - the standard MMR,
MR, and MH image on the T.4 specification. If the fax image is not
standardized, the device does not copy a fax image to network
memory from fax memory.
The TOE controls over and gives restricted permission to information
flow between the fax board and the network port of the main controller.
The direct communication between an internal client PC and fax
modem in the local area will not be processed; it is only available in
TOE.
The fax forwarding function automatically forwards a received fax
image to a designated number. When this function is activated, the
device has to copy the received fax image from fax memory to network
card memory. Before copying the image, the device inspects the fax
image to make sure it is in standard format. The fax image can only be
transferred to network memory via a public switched telephone
network (PSTN) line if it is in standard format and sent to the
SMTP/SMB/FTP server through the internal network.
Identification and Authentication
The TOE requires dividing a real client into different kinds of access
level, such as a Web/local/telnet system administrator, before giving
permission to access system management. The system administrator
position is divided into three positions: web administrator, local
administrator, telnet administrator. In the authentication process of
web administrator, the web client should input an ID and a password
into the web user interface. Also, the local administrator in the










