Canon imageFORMULA ScanFront 400 CAC/PIV ScanFront 400 CAC/PIV Configuration G - Page 53

SMTPS or STARTTLS for E-mail Scan Destinations and 'No email Security'.

Page 53 highlights

4. Click [OK]. The uploaded certificate is displayed in the Trusted Certificate Store list. To delete a certificate, select the check box next to the certificate ➞ click [Delete Selected] ➞ [OK]. To view the details of a certificate or download it, click the [View] icon next to the certificate ➞ click [Close] or [Download]. IMPORTANT • Always make sure to upload the most current DoD root and intermediate CA's certificates. If a DoD root or intermediate CA's certificate expires, is revoked, or if new nodes or certificates are introduced and are not uploaded, user authentication will fail. • Trusted certificates can be uploaded in plain text and Base64 encoded formats as .cer, .zip, and PKCS7 files. • Trusted certificates installed in the Certificates screen are used for the following CAC/PIV functions: - OCSP revocation check or validation of signer or recipient certificates - OCSP revocation check or validation of KDC certificates - OCSP revocation check or validation of card certificates - OCSP revocation check or validation of SSL certificates when communicating with LDAP or SMTP servers. • Trusted certificates installed via ScanFront 400 CAC/PIV Administrator Settings certificates are used for the following non-CAC/PIV functions: - Validation of an SSL certificate when communicating with an SMTP server (SMTPS or STARTTLS) for E-mail Scan Destinations and 'No email Security'. - Validation of an SSL certificate when using FTP scan destinations and FTPS or SFTP. 53 ScanFront 400 CAC/PIV V1.3.1 Configuration Guide

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108

53
ScanFront 400 CAC/PIV V1.3.1 Configuration Guide
4.
Click [OK].
The uploaded certificate is displayed in the Trusted Certificate Store list.
To delete a certificate, select the check box next to the certificate
click
[Delete Selected]
[OK].
To view the details of a certificate or download it, click the [View] icon next to the
certificate
click [Close] or [Download].
IMPORTANT
Always make sure to upload the most current DoD root and intermediate CA’s
certificates. If a DoD root or intermediate CA’s certificate expires, is revoked, or
if new nodes or certificates are introduced and are not uploaded, user
authentication will fail.
Trusted certificates can be uploaded in plain text and Base64 encoded formats as
.cer, .zip, and PKCS7 files.
Trusted certificates installed in the Certificates screen are used for the following
CAC/PIV functions:
-
OCSP revocation check or validation of signer or recipient certificates
-
OCSP revocation check or validation of KDC certificates
-
OCSP revocation check or validation of card certificates
-
OCSP revocation check or validation of SSL certificates when communicating
with LDAP or SMTP servers.
Trusted certificates installed via ScanFront 400 CAC/PIV Administrator Settings
certificates are used for the following non-CAC/PIV functions:
-
Validation of an SSL certificate when communicating with an SMTP server
(SMTPS or STARTTLS) for E-mail Scan Destinations and ‘No email Security’.
-
Validation of an SSL certificate when using FTP scan destinations and FTPS or
SFTP.