Specifications

Print Controller Design Guide for Information Security:
Page 44 of 92
The password necessary for authentication is encrypted before the printer driver sends it to the
MFP/LP. When performing the encryption, it is possible to use a key that is common to both the
driver and the MFP/LP, known as the driver encryption key. It is also possible to encrypt the
password using Simple Encryption, which does not use the driver encryption key. If the “Permit
Simple Encryption” setting in the MFP/LP is disabled, the MFP/LP will only accept passwords that
have been encrypted using the driver encryption key. Therefore under these conditions, even when
the MFP/LP receives data with passwords encrypted using Simple Encryption, the job will be reset
and the data will not be printed out. It is therefore recommended to use a stronger encryption
method, which ensures that a third party attempting to tap into the communication path will not be
able to surmise the actual password and impersonate the password holder.
In addition the printing data itself, it is also possible to encrypt the communication path by selecting
“IPP over SSL” as the network communication protocol.
Although any authenticated user can view the “Spool Printing” list (WebImageMonitor), printer job
history and error log, it is possible to display other users’ information in the in the form of asterisks
(“****”).
When Locked Print is selected as the job type, and the operator wishes to print out a Locked Print
document stored in the MFP/LP from the operation panel or WebImageMonitor, it is necessary to
enter a password before the job can be performed. If this password does not match the
pre-registered password, the operator is not allowed to retry. This prevents illegal access to Locked
Print documents.
When User Authentication is not enabled, it is possible to view the list of Locked Print documents
created by all users, however all filenames are displayed as asterisks (“****”). When User
Authentication is enabled, the user cannot view any information on this list until authenticated.
However, even after successfully logging in, the user can only view a list of his or her own Locked
Print documents (the filenames for which are displayed as is, without asterisks).
Stored Print or Store and Print documents in the HDD can be printed out from WebImageMonitor or
the MFP/LP operation panel, as described earlier, and can be protected with a password. If a
password has been assigned to the document, the operator will be prompted when attempting to
print it out. The document cannot be opened unless the correct password is entered, which
prevents illegal access to the document.