IEEE 2600 Security Standard |
This section describes the IEEE 2600 defined security requirements and how the functions of this machine meet these requirements.
By authenticating users of the machine, this function helps prevent use of the machine by unauthorized users. SSO-H, the machine's standard login service, enables you to manage the machine's users by performing login authentication with user names and passwords.
Restricts the use of functions to which authenticated users do not have privileges. This function is provided by the ACCESS MANAGEMENT SYSTEM KIT. This product enables you to restrict the functions available to each user who logs in to the machine using SSO-H (see "User Authentication Function").
Helps prevent the reuse of temporary data stored in the machine's hard disk (image data generated for a job, etc.). This function is provided by the Data Erase Kit (optional). By completely erasing (overwriting) data from the machine's memories such as the hard disk, you can help prevent reuse of the data.
Helps prevent unauthorized access to various data and confidential information stored in the machine's hard disk. This function is provided by the HDD Data Encryption & Mirroring Kit (optional). This optional product encrypts the data stored in the machine's hard disk to reduce the risk of information leak, even if the hard disk is removed from the machine and analyzed/restored. However, data stored in memory media is not encrypted.
Protects data on the network. This function is provided by the IPSec Board (optional). You can use IPSec to create security policies to protect data sent and received over an IP network from threats such as eavesdropping, falsification, and impersonation.
This function is used to oversee security-related user operations. Audit log is provided as a standard function. Security logs are created and the logs can be checked after they have been exported from the Remote UI. However, logs generated by Advanced Box/Hold operations are not included in the audit.
Ensures that the main security functions of the machine operate normally. A standard self-test function for the code module is available in this machine. The self-test function enables you to confirm that IPSec functions correctly. |