HP Commercial LaserJet Printers and MFPs - Imaging and Printing Security Best Practices
Chapter 2 HP LaserJet and Color LaserJet MFP Security Checklist 8
Causing interference with network communication to the MFP
Changing the network location of the MFP
Causing an error state that interrupts service
Changing access configurations
Here are some methods of minimizing opportunities for denial of service on an MFP:
Lock the control panel.
Lock EWS configuration settings.
Close unused ports and protocols.
Disable controls such as the Job Cancel button and the Go button.
Enable the resume feature to allow the MFP to resume operations after an error state.
Configure Job Timeout.
Control physical access to the MFP.
Lock physical access to removable hardware.
Elevation of Privilege
Elevation of privilege is any method of upgrading authorized access to include unauthorized
access. This can be any of the following:
Non-administrators changing settings to get administrator privileges
Unauthorized use of management software to provide access for other unauthorized users
Using management software to bypass job accounting functions
Here are some methods of minimizing opportunities for elevation of privilege:
Configure the administrator (device) password.
Configure SNMPv3 and HTTPS.
Lock the control panel.