Xerox Multi-Function Device Security Target50Copyright 2013 Xerox Corporation. All rights reserved.acting on behalf of users: [security attributes of subjectsacting on behalf of a user will not be changed while anaction is in progress and cannot be changed by anyonebut U.ADMINISTRATOR (System Administrator)].6.3.6. Class FMT: Security management6.3.6.1. FMT_MSA.1 (USER) Management of security attributesHierarchical to: No other components.Dependencies: [FDP_ACC.1 Subset access control, orFDP_IFC.1 Subset information flow control]FMT_SMR.1 Security rolesFMT_SMF.1 Specification of Management FunctionsFMT_MSA.1.1 (USER) The TSF shall enforce the [User Access ControlSFP in Table 21] to restrict the ability to change_default,modify, delete, [read] the security attributes [all] to[U.ADMINISTRATOR (System Administrator)].Application Note: This SFR is FMT_MSA.1 (a) from The IEEE Std. 2600.2PP.6.3.6.2. FMT_MSA.1 (FUNC) Management of security attributesHierarchical to: No other components.Dependencies: [FDP_ACC.1 Subset access control, orFDP_IFC.1 Subset information flow control]FMT_SMR.1 Security rolesFMT_SMF.1 Specification of Management FunctionsFMT_MSA.1.1 (FUNC) The TSF shall enforce the [TOE Function AccessControl SFP] to restrict the ability to change_default,modify, delete, [read] the security attributes [role andassociated access permissions] to [U.ADMINISTRATOR(System Administrator)].Application Note: This SFR is FMT_MSA.1 (b) from The IEEE Std. 2600.2PP.6.3.6.3. FMT_MSA.3 (USER) Static attribute initialisationHierarchical to: No other components.Dependencies: FMT_MSA.1 Management of security attributesFMT_SMR.1 Security roles