Specifications

Samsung MFP Security Kit Type_B V1.5 Security Target
80
Copyright

2010 Samsung Electronics Co., Ltd., All rights reserved
This component ensures that fake characters (e.g. asterisk [*]) are
displayed for each digit entered to hide the value entered. Therefore, it
satisfies security object O. CONTROL_DATA_ACCESS, and O.
IDENTIFICATION_AND_AUTHENTICATION_ON_ADMINISTRATOR
FIA_UID.2 (User identification before any action)
This component ensures the identification of system administrators before
granting access to the TOE. Therefore, it satisfies security object O.
IDENTIFICATION_AND_
AUTHENTICATION_ON_ADMINISTRATOR.
FMT_MOF.1 (Management of Security Functions Behavior)
This component ensures that only authorized system administrators can
limitedly access the TSF management function. Therefore, it satisfies
security object O. MANAGE.
FMT_MTD.1 (Management of TSF data)
This component defines that only authorized system administrators can
change, query, delete, or download the TSF data. Therefore, it satisfies
security object O. MANAGE.
FMT_SMF.1 (Specification of Management Functions)
This component ensures that the security management function in the
TOE is available. Therefore, it satisfies security object O. MANAGE.
FMT_SMR.1 (Security roles)
This component ensures that the TOE plays a reliable system
administrator’s role to manage the TOE and TSF. Therefore, it satisfies
security object O. MANAGE.
FPT_RCV.4 (Function recovery)
This component ensures that TSF is recovered to a stable and safe state
from pre-defined errors. Therefore, it satisfies security object
O.IMAGE_OVERWRITE.
5.3.2 Rationale for the TOE Assurance Requirements
This Samsung MFP Security Kit Type_B V1.5 satisfies the assurance
requirements of EAL3
EAL3 is an assurance package that requires well-organized test and
inspection.
EAL3 permits a conscientious developer to gain maximum assurance from
positive security engineering at the design stage without substantial
alteration of existing sound development practices. EAL3 is applicable in
those circumstances where developers or users require a moderate level