Xerox Multi-Function Device Security Target37Copyright 2013 Xerox Corporation. All rights reserved.6.2. TOE Security PoliciesThis chapter contains the definition of security policies which must beenforced by the TSF.6.2.1. IP Filter SFPThe security function “User Data Protection – IP Filtering”(TSF_FDP_FILTER) requires that network traffic to and from the TOE will befiltered in accordance with the rules defined by the system administrator atthe Web User Interface configuration editor for IP Filtering. This policy will beenforced on: Subjects. External entities that send network traffic to the TOE. Information. All IP-based traffic to and from that destination. Operations. Pass network traffic.Note: The TOE cannot enforce the IP Filtering SFP when it is configured forIPv6.6.2.2. User Access Control SFPThe Security Function Policy (SFP) described in Table 21 and Table 22 belowis referenced by the FDP class SFRs.Table 21: User Access Control SFPObject Attribute Operation(s) Subject Access Control RuleD.DOC+PRTReadU.NORMALU.ADMINISTRATOR(AccountingAdministrator)Denied, except forhis/her owndocumentsU.ADMINISTRATOR(System Administrator)Allowed, except fordocuments protectedby an optionalpasscodeDelete U.NORMAL,U.ADMINISTRATORDenied, except whenthe associatedD.FUNC is deleted.+SCN Read, Delete U.NORMAL,U.ADMINISTRATORDenied, except forhis/her owndocuments+CPY Read, Delete U.NORMAL,U.ADMINISTRATORDenied, except forhis/her owndocuments