Ricoh Aficio SP C821DNT1 Design Guide - Page 73

Optional Features

Page 73 highlights

Print Controller Design Guide for Information Security 3. Optional Features 3-1 @Remote 3-1-1 Overview of @Remote Operations "@Remote" refers to a remote machine management service that manages and monitors the MFP/LP status from a remote location called the @Remote Center. Two communication paths are possible, the first being a direct connection between the MFP/LP and @Remote Center, and the second a connection between these two points via an intermediary device (RC Gate) connected to the MFP/LP in the same LAN. When communicating as a "client", the MFP/LP continually monitors its own status and informs RC Gate or @Remote Center when action is required, such as when parts have reached their periodic replacement limit or an abnormal machine condition is detected. When communicating as a "server", the MFP/LP receives requests from RC Gate or @Remote Center for status information such as the amount of toner remaining in the MFP/LP, after which it provides this information to whichever has requested it. @Remote communication to and from the MFP/LP is only possible when the relevant SP mode switch has been turned ON. It is therefore possible to prohibit communication with RC Gate or @Remote Center by turning this switch OFF. 3-1-2 Data Security Considerations As mentioned above, communication between the MFP/LP and RC Gate is conducted on an SSL-encrypted communication path. Since digital certificate-based authentication takes place before any data exchange is performed, this ensures that RC Gate is the only remote device to which the MFP/LP can be connected. The MFP/LP's digital certificate for the @Remote function is embedded in the MFP/LP during the last stage of factory assembly. With the use of SSL communication, symmetric key cryptography ensures that the data being transferred cannot be leaked to third parties. Security is increased even further by the fact that the symmetric key used is not a static key, but rather one that is generated every time a new session is initiated. Page 73 of 86

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86

Print Controller Design Guide for Information Security
Page 73 of 86
3.
Optional Features
3-1
@Remote
3-1-1 Overview of @Remote Operations
°
“@Remote” refers to a remote machine management service that manages and monitors the MFP/LP
status from a remote location called the @Remote Center. Two communication paths are possible, the
first being a direct connection between the MFP/LP and @Remote Center, and the second a
connection between these two points via an intermediary device (RC Gate) connected to the MFP/LP
in the same LAN.
°
When communicating as a “client”, the MFP/LP continually monitors its own status and informs RC
Gate or @Remote Center when action is required, such as when parts have reached their periodic
replacement limit or an abnormal machine condition is detected. When communicating as a “server”,
the MFP/LP receives requests from RC Gate or @Remote Center for status information such as the
amount of toner remaining in the MFP/LP, after which it provides this information to whichever has
requested it.
°
@Remote communication to and from the MFP/LP is only possible when the relevant SP mode switch
has been turned ON. It is therefore possible to prohibit communication with RC Gate or @Remote
Center by turning this switch OFF.
3-1-2 Data Security Considerations
°
As mentioned above, communication between the MFP/LP and RC Gate is conducted on an
SSL-encrypted communication path. Since digital certificate-based authentication takes place before
any data exchange is performed, this ensures that RC Gate is the only remote device to which the
MFP/LP can be connected.
°
The MFP/LP’s digital certificate for the @Remote function is embedded in the MFP/LP during the last
stage of factory assembly.
°
With the use of SSL communication, symmetric key cryptography ensures that the data being
transferred cannot be leaked to third parties. Security is increased even further by the fact that the
symmetric key used is not a static key, but rather one that is generated every time a new session is
initiated.