Sony SNC-RS44N User Guide - Page 57

Client certificate Tab, EAP identity, EAP password, EAP method, OK/Cancel

Page 57 highlights

Administrating the Camera Wired interface To activate the 802.1X authentication function for wired ports, select On. Wired interface status Shows the authentication status of the 802.1X authentication function for wired ports. Click Refresh to update the status. Wireless interface status Shows the authentication status of the 802.1X authentication function for wireless networks. Click Refresh to update the status. EAP identity Type the user name to identify the client in the 802.1X authentication server using 3 to 253 characters. EAP password A supplicant EAP password is needed to be inputted when PEAP is selected with EAP condition. The password can contain half-width letters and the length should be between 1 to 50. Reset To change the once set EAP password, click Reset and clear the current password. A new password can be entered. Note After you click Reset, if you wish to cancel the EAP password change, click Cancel at the bottom of the screen. This will cancel other changes made to the settings. EAP method You can select the authentication method used with the authentication server. This device supports TLS and PEAP. TLS: By this method, the supplicant and the server authenticate each other using a certificate. This enables secure port authentication. PEAP: By this method, an EAP password is used for the supplicant authentication and a certificate is used for server authentication. OK/Cancel See "Buttons common to every menu" on page 29. Client certificate Tab When TLS is selected as the EAP method, client certificate is imported for authentication at the camera. Client certificate request Import, display or delete the client certificate. To import the client certificate Click Browse... to select the client certificate to be imported. Then click Submit, and the selected file will be imported to the camera. Note The import process becomes invalid if the selected file is not a client certificate or the imported client certificate is not allowed. To display the information of the client certificate When the client certificate has been saved in the camera correctly, its information appears on Status, Issuer DN, Subject DN, Validity Period and Extended Key Usage. Status: Shows if the status of the client certificate is valid or invalid. Valid means the client certificate is correctly stored and set. Invalid means the client certificate is not correctly stored and set. Possible causes of Invalid are as follows: - The private key password included in the client certificate is not specified correctly. - The private key password is specified in spite of the fact that the key pair in the client certificate is not encrypted. - The key pair is not included in the client certificate. 57 Using the 802.1X Authentication Function - 802.1X Menu

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120

Administrating the Camera
Using the 802.1X Authentication Function — 802.1X Menu
57
Wired interface
To activate the 802.1X authentication function for wired
ports, select
On
.
Wired interface status
Shows the authentication status of the 802.1X
authentication function for wired ports.
Click
Refresh
to update the status.
Wireless interface status
Shows the authentication status of the 802.1X
authentication function for wireless networks.
Click
Refresh
to update the status.
EAP identity
Type the user name to identify the client in the 802.1X
authentication server using 3 to 253 characters.
EAP password
A supplicant EAP password is needed to be inputted
when PEAP is selected with EAP condition. The
password can contain half-width letters and the length
should be between 1 to 50.
Reset
To change the once set EAP password, click
Reset
and
clear the current password. A new password can be
entered.
Note
After you click
Reset
, if you wish to cancel the EAP
password change, click
Cancel
at the bottom of the
screen. This will cancel other changes made to the
settings.
EAP method
You can select the authentication method used with the
authentication server. This device supports TLS and
PEAP.
TLS:
By this method, the supplicant and the server
authenticate each other using a certificate. This
enables secure port authentication.
PEAP:
By this method, an EAP password is used for the
supplicant authentication and a certificate is used for
server authentication.
OK/Cancel
See “Buttons common to every menu” on page 29.
Client certificate Tab
When TLS is selected as the EAP method, client
certificate is imported for authentication at the camera.
Client certificate request
Import, display or delete the client certificate.
To import the client certificate
Click
Browse…
to select the client certificate to be
imported.
Then click
Submit
, and the selected file will be
imported to the camera.
Note
The import process becomes invalid if the selected file is
not a client certificate or the imported client certificate is
not allowed.
To display the information of the client
certificate
When the client certificate has been saved in the camera
correctly, its information appears on
Status
,
Issuer DN
,
Subject DN
,
Validity Period
and
Extended Key
Usage
.
Status:
Shows if the status of the client certificate is
valid or invalid.
Valid
means the client certificate is correctly stored
and set.
Invalid
means the client certificate is not correctly
stored and set.
Possible causes of
Invalid
are as follows:
– The private key password included in the client
certificate is not specified correctly.
– The private key password is specified in spite of
the fact that the key pair in the client certificate is
not encrypted.
The key pair is not included in the client certificate.