HP t505 Administrator Guide 5 - Page 34

Certificates, Certificate Manager, SCEP Manager

Page 34 highlights

Option VNC Read Only VNC Use Password VNC Notify User to Allow Refuse VNC Show Timeout for Notification User Notification Message Refuse connections in default Re-set VNC server right now Description Makes the VNC session read-only. Makes a password required when accessing the client using VNC. Click Set Password to set the password. Enables a notification dialog on the remote system that informs the remote user when someone is attempting to connect using VNC. The user can refuse either allow or refuse access. Sets the length of time in seconds that the remote notification dialog is displayed. Allows you to display a message in the notification dialog to the remote user. If enabled, the VNC connection will be refused by default when the timer expires. Resets the VNC server after applying the new settings. Certificates NOTE: For more information about using certificates in Linux, go to http://www.openssl.org/docs/ apps/x509.html. Certificate Manager To open the Certificate Manager: ▲ Select Advanced > Certificates in the Control Panel. Use the Certificate Manager to manually install a certificate from a certificate authority (CA). This action copies the certificate to the user's local certificate store (/usr/local/share/ca-certificates) and configures OpenSSL to use the certificate for connection verification. If desired, use the Profile Editor to attach the certificate to a profile, as described in Adding certificates to a client profile on page 59. NOTE: Generally, a self-signed certificate will work as long as it is valid according to specification and can be verified by OpenSSL. SCEP Manager To open the SCEP Manager: ▲ Select Advanced > SCEP Manager in the Control Panel. Use the SCEP Manager when you need to enroll or renew client-side certificates from a CA. During an enrollment or renewal, the SCEP Manager generates the client's private key and certificate request, and then it sends the request to the CA on the SCEP server. When the CA issues the certificate, the certificate is returned and placed in the client's certificate store. OpenSSL uses the certificate for connection verification. NOTE: Before enrollment, make sure that the SCEP server is configured properly. Use the Identifying tab of the SCEP Manager to enter information about the user, if desired. 22 Chapter 4 Control Panel configurations

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162

Option
Description
VNC Read Only
Makes the VNC session read-only.
VNC Use Password
Makes a password required when accessing the client using VNC.
Click
Set Password
to set the password.
VNC Notify User to Allow Refuse
Enables a notification dialog on the remote system that informs the
remote user when someone is attempting to connect using VNC.
The user can refuse either allow or refuse access.
VNC Show Timeout for Notification
Sets the length of time in seconds that the remote notification
dialog is displayed.
User Notification Message
Allows you to display a message in the notification dialog to the
remote user.
Refuse connections in default
If enabled, the VNC connection will be refused by default when the
timer expires.
Re-set VNC server right now
Resets the VNC server after applying the new settings.
Certificates
NOTE:
For more information about using certificates in Linux, go to
docs/
apps/x509.html
.
Certificate Manager
To open the Certificate Manager:
Select
Advanced > Certificates
in the Control Panel.
Use the Certificate Manager to manually install a certificate from a certificate authority (CA). This
action copies the certificate to the user’s local certificate store (/usr/local/share/ca-certificates) and
configures OpenSSL to use the certificate for connection verification.
If desired, use the Profile Editor to attach the certificate to a profile, as described in
Adding certificates
to a client profile
on page
59
.
NOTE:
Generally, a self-signed certificate will work as long as it is valid according to specification
and can be verified by OpenSSL.
SCEP Manager
To open the SCEP Manager:
Select
Advanced > SCEP Manager
in the Control Panel.
Use the SCEP Manager when you need to enroll or renew client-side certificates from a CA.
During an enrollment or renewal, the SCEP Manager generates the client’s private key and certificate
request, and then it sends the request to the CA on the SCEP server. When the CA issues the
certificate, the certificate is returned and placed in the client’s certificate store. OpenSSL uses the
certificate for connection verification.
NOTE:
Before enrollment, make sure that the SCEP server is configured properly.
Use the
Identifying
tab of the SCEP Manager to enter information about the user, if desired.
22
Chapter 4
Control Panel configurations