HP t310 PCoIP Administrator's Guide - Page 147

CAC Smart Card Properties, 11.1.5 Communication Protocol, 11.1.6 Card Certificate Requirements

Page 147 highlights

PCoIP Administrator's Guide l HID Omnikey 5321 l Gemalto PC USB-SW 11.1.3 CAC Smart Card Properties For smart card authentication and SSO, the smart card must meet one of these specifications: l GSC-IS v2.0 and v2.1 cards (firmware 3.2.0 or later) l PIV transitional cards (firmware 3.4.0 or later) l PIV endpoint cards (firmware 3.4.0 or later) 11.1.4 .Net Smart Card Properties For smart card authentication and SSO, the smart card must be a Gemalto .Net card (firmware 3.4.1 or later). 11.1.5 Communication Protocol The communication protocol between the smart card and the reader is referred to as T=X, where X is 0 or 1. Firmware 3.2.0 or later supports T=0. Firmware 3.4.0 and later supports T=1. 11.1.6 Card Certificate Requirements A certificate on the smart card must have these properties: l Key usage set to digital signature l Subject Common Name and/or Subject Alternative Name (Other Name) is set l Enhanced Key Usage includes Client Authentication and/or Smart Card Logon l Key Length is no larger than 2048 bits 11.1.7 Tested Smart Card Models Teradici has tested these specific smart card models: Smart Card Model Tested for Firmware Release (or later) Axalto Cryptoflex .NET 3.4.1 Gemalto Cyberflex Access 64K V2c 3.4.0 Gemalto TOP DL GX4 144K DI 3.4.0 Gemalto TOP DM GX4 72K (FIPS) 3.4.0 GnD SmartCafe Expert 144K DI v3.2 3.4.0 Oberthur CosmopolIC 64K V5.2 3.2.0 Oberthur ID-One Cosmo 64 v5.2D Fast ATR with PIV 3.4.0 TER0606004 Issue 16 147

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163

l
HID Omnikey 5321
l
Gemalto PC USB-SW
11.1.3
CAC Smart Card Properties
For smart card authentication and SSO, the smart card must meet one of these
specifications:
l
GSC-IS v2.0 and v2.1 cards (firmware 3.2.0 or later)
l
PIV transitional cards (firmware 3.4.0 or later)
l
PIV endpoint cards (firmware 3.4.0 or later)
11.1.4
.Net Smart Card Properties
For smart card authentication and SSO, the smart card must be a Gemalto .Net card
(firmware 3.4.1 or later).
11.1.5
Communication Protocol
The communication protocol between the smart card and the reader is referred to as T=X,
where X is 0 or 1. Firmware 3.2.0 or later supports T=0. Firmware 3.4.0 and later supports
T=1.
11.1.6
Card Certificate Requirements
A certificate on the smart card must have these properties:
l
Key usage set to digital signature
l
Subject Common Name and/or Subject Alternative Name (Other Name) is set
l
Enhanced Key Usage includes Client Authentication and/or Smart Card Logon
l
Key Length is no larger than 2048 bits
11.1.7
Tested Smart Card Models
Teradici has tested these specific smart card models:
Smart Card Model
Tested for Firmware Release
(or later)
Axalto Cryptoflex .NET
3.4.1
Gemalto Cyberflex Access 64K V2c
3.4.0
Gemalto TOP DL GX4 144K DI
3.4.0
Gemalto TOP DM GX4 72K (FIPS)
3.4.0
GnD SmartCafe Expert 144K DI v3.2
3.4.0
Oberthur CosmopolIC 64K V5.2
3.2.0
Oberthur ID-One Cosmo 64 v5.2D Fast ATR with PIV
3.4.0
TER0606004 Issue 16
147
PCoIP Administrator's Guide