Specifications

Samsung MFP Security Kit Type_B V1.5 Security Target
24
Copyright
2010 Samsung Electronics Co., Ltd., All rights reserved
scan-to-email, or scan-to-server process. Immediately after the job has
been completed, the files on the hard disk drive are overwritten using one
to seven passes for the overwrite procedure. Image Overwrite provides
two kinds of functions: automatic image overwrite and manual image
overwrite
Automatic Image Overwrite automatically overwrites temporary image
files created as a result of the processing of copying/printing/scanning or
overwrites the preserved files on a reserved section of the hard disk drive
of the main controller by the general user. The image overwrite security
function can also be invoked manually by the local administrator (Manual
Image Overwrite). Once invoked, the Manual Image Overwrite overwrites
the contents of the reserved section on the hard disk drive.
Information Flow (TSF_FLW)
TOE has the memory to store data. The memory is divided into fax
memory that fax board can only access and network memory that
network port in main controller can only access. Separation between the
PSTN port on the FAX board and the network port on the main controller
board is established through the architectural design of the main
controller software. TOE controls and restricts information flow between
fax board and network port in main controller. The direct communication
between client PC and fax modem in internal network is impossible; the
communication can only be passed through TOE. When using fax-to-email
function, the fax image received via PSTN line will be transmitted to
internal network. The fax image received via PSTN line is stored first in
fax memory, and then the data goes through verification process. When
the fax image is proper data standardized with MMR, MR, or MH of T.4
specification, TOE copies the data to network memory. Then the fax
image can be transmitted into SMTP server through network card. Every
data that is transmitted to the internal network is verified by the TOE,
therefore it does not threat or modify TOE component of the internal
network.
Storage Data Encryption (TSF_NVE)
The TOE encrypts image data and configuration data on the HDD. After
that, the TOE stores the data on the HDD and it decrypts the stored data
to use it. The cryptographic algorithm used by the TOE is AES algorithm
with 256-bit key size. Each product has its unique value and nobody
(including the administrator) can leak the key value to the outside.