
CRP-C0266-01
8
Table 3-2 Relation between Operational Authorities for the Document Data and the
Operation Permission (Document File Owner)
Operational Authorities for the Document Data Authorised Operations
View Edit Edit/Delete Full Control
Read Document Data X X X X
Delete Document Data - - X X
Change Print Settings - X X X
Modify Document Data ACL
- Newly create document file users
- Delete document file users
- Change operational authorities
- - - X
As mentioned above, although a general user is allowed to use the Basic Functions to
manage the document data, the scope of operation on document data is restricted by the
document data ACL. T.UNAUTH_ACCESS, by which authorised TOE users may breach
the limits of authorised usage and access document data, is countered by the user
identification and authentication and the access control of protected assets.
2) Supervisor
The supervisor is permitted to actively use the following Basic Functions and Security
Functions:
Basic Functions:
> Web Service Function
> Management Function
Security Functions:
> Security Management Function
(The parts of the Security Management Functions that are permitted for supervisor such
as management of administrator information, management of supervisor information,
etc.)
The supervisor is a user who can manage the information of the administrator and
supervisor. Such information includes the administrator password, supervisor ID and
the password.
3) Administrator (File Administrator)
The file administrator is permitted to use the following Basic Functions and Security
Functions:
Basic Functions:
> Document Server Function (for deletion only)
> Web Service Function
> Management Function
Security Functions:
> Security Management Function
(The parts of the Security Management Functions that are permitted for administrators
Kommentare zu diesen Handbüchern