HP Color LaserJet 4730 HP LaserJet MFP and Color MFP Products - Configuring Se - Page 44

Simple over SSL, LDAP Server Bind Method, PIN Authentication, Confirm PIN

Page 44 highlights

These settings enable the MFPs to require a user's NT logon credentials for use of the MFPs. This is related to the LDAP access options on the Digital Sending page, which enable the MFP to use the LDAP address book; however, the SSL certificate options for both configurations appear on the Digital Sending page. Note: These instructions assume that the LDAP server is configured for SSL. If you have this feature available, you should go to the Digital Send page (see the Digital Send section, above) to upload a certificate that was created by the LDAP server. 7. Select Simple over SSL in the LDAP Server Bind Method: dropdown menu. Note: If possible, you should choose Simple over SSL for the bind method and configure the LDAP server for communication over a secure SSL channel. This also requires that you generate SSL certificates and upload them to the MFPs using the LDAP Access options in the Digital Sending page (explained earlier). CAUTION: If you choose Simple for the bind method, usernames, email addresses, passwords, and other data will be sent over the LDAP protocol in clear text. 8. Fill in the remaining fields according to your network configuration. 9. If your network has Kerberos authentication capabilities, configure the Kerberos Authentication options. 10. Configure PIN Authentication as desired (Figure 44). Figure 44: The PIN Authentication options. You can use PIN Authentication with other authentication features to restrict use of the MFPs further. For instance, you can require all users to login at walk up using the LDAP system and then require group 1 PIN for access to the copy function and group 2 PIN for access to the fax function. Click to select PIN Authentication, and enter PINs as desired. Be sure to repeat the PINs exactly in the Confirm PIN fields. Note: The Disable Direct Ports option appears on the Security page. Do not configure it now. It should be configured by itself at the end of this checklist. It is covered later. HP LaserJet and Color LaserJet MFP Security Checklist 44

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69

HP LaserJet and Color LaserJet MFP Security Checklist
44
These settings enable the MFPs to require a user's NT logon credentials for use of the MFPs.
This is related to the LDAP access options on the Digital Sending page, which enable the
MFP to use the LDAP address book; however, the SSL certificate options for both
configurations appear on the Digital Sending page.
Note:
These instructions assume that the LDAP server is
configured for SSL. If you have this feature available, you
should go to the Digital Send page (see the Digital Send
section, above) to upload a certificate that was created by
the LDAP server.
7. Select
Simple over SSL
in the
LDAP Server Bind Method:
dropdown menu.
Note:
If possible, you should choose Simple over SSL for the bind
method and configure the LDAP server for communication
over a secure SSL channel. This also requires that you
generate SSL certificates and upload them to the MFPs
using the LDAP Access options in the Digital Sending page
(explained earlier).
CAUTION:
If you choose Simple for the bind method, usernames,
email addresses, passwords, and other data will be sent
over the LDAP protocol in clear text.
8.
Fill in the remaining fields according to your network configuration.
9.
If your network has Kerberos authentication capabilities, configure the Kerberos
Authentication options.
10. Configure
PIN Authentication
as desired (Figure 44).
Figure 44: The PIN Authentication options.
You can use PIN Authentication with other authentication features to restrict use of the MFPs
further. For instance, you can require all users to login at walk up using the LDAP system and
then require group 1 PIN for access to the copy function and group 2 PIN for access to the
fax function.
Click to select
PIN Authentication
, and enter PINs as desired. Be sure to repeat the PINs
exactly in the
Confirm PIN
fields.
Note:
The Disable Direct Ports option appears on the Security
page. Do not configure it now. It should be configured by
itself at the end of this checklist. It is covered later.