HP 630n HP Jetdirect Print Servers - Administrator's Guide - Page 104

IPsec/Firewall, Table 4-19

Page 104 highlights

Table 4-19 802.1X configuration settings Item Description Enable Protocols Enable (check) the supported protocols used for 802.1X authentication on your network. ● LEAP A Cisco Systems proprietary protocol that uses passwords for mutual authentication (that is, the client and the server authenticate each other). ● PEAP Uses digital certificates for network server authentication and passwords for client authentication. PEAP requires an EAP User Name, EAP Password, and CA Certificate. Dynamic encryption keys are also used. ● EAP-TLS Uses a mutual authentication protocol based on digital certificates for authentication of both the client and the network authentication server. EAP-TLS requires an EAP User Name, HP Jetdirect certificate and CA certificate. Dynamic encryption keys are also used. User Name EAP/802.1X user name (up to 128 characters maximum) for this device. The default is the default host name of the print server, NPIxxxxxx, where xxxxxx are the last six digits of the LAN hardware (MAC) address. Password, Confirm Password EAP/802.1X password (up to 128 characters maximum) for this device. Enter the password again in the Confirm Password field to verify. Server ID Server ID validation string to identify and validate the authentication server. The string is specified on the digital certificate issued by a trusted certificate authority (CA) for the authentication server. Can contain a partial string (right-most characters) unless the Require Exact Match check box is selected. Encryption Strength Minimum encryption strength used during communication with the authentication server. Select Low, Medium, or High encryption strength. For each encryption strength, ciphers are specified to identify the weakest cipher allowed. Jetdirect Ceritificate A self-signed HP Jetdirect certificate is pre-installed. To install a replacement, click Configure. CA Certificate To validate the authentication server's identity, the authentication server's certificate or a CA (or "Root") certificate must be installed on the print server. This CA certificate must be issued by the certificate authority who signed the authentication server's certificate. To configure or install a CA certificate, click Configure. Authentication Behavior: Reauthenticate on Apply Control authentication when you click Apply on this page, assuming valid configuration entries were made. NOTE: Does not apply to security or other configuration wizards. Changes to parameters through a wizard always causes the print server to re-authenticate. If disabled (default), the print server does not attempt re-authentication unless configuration changes cause the print server to disconnect and reconnect to the network. If enabled, the print server always attempts to re-authenticate using the configuration values. Restore Defaults Restore 802.1X configuration settings to factory default values. IPsec/Firewall Configure or view the IPsec or Firewall policy for the print server. You can enable or disable IPsec/ Firewall operation on the print server, and configure the default rule for IP packets that are not covered by IPsec/Firewall rules. 94 Chapter 4 Embedded Web server (V.38.xx) ENWW

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202

Table 4-19
802.1X configuration settings
Item
Description
Enable Protocols
Enable (check) the supported protocols used for 802.1X authentication on your network.
LEAP
A Cisco Systems proprietary protocol that uses passwords for mutual
authentication (that is, the client and the server authenticate each other).
PEAP
Uses digital certificates for network server authentication and passwords for
client authentication. PEAP requires an EAP User Name, EAP Password, and CA
Certificate. Dynamic encryption keys are also used.
EAP-TLS
Uses a mutual authentication protocol based on digital certificates for
authentication of both the client and the network authentication server. EAP-TLS
requires an EAP User Name, HP Jetdirect certificate and CA certificate. Dynamic
encryption keys are also used.
User Name
EAP/802.1X user name (up to 128 characters maximum) for this device. The default is the
default host name of the print server, NPIxxxxxx, where xxxxxx are the last six digits of the
LAN hardware (MAC) address.
Password
,
Confirm Password
EAP/802.1X password (up to 128 characters maximum) for this device. Enter the password
again in the Confirm Password field to verify.
Server ID
Server ID validation string to identify and validate the authentication server. The string is
specified on the digital certificate issued by a trusted certificate authority (CA) for the
authentication server. Can contain a partial string (right-most characters) unless the
Require Exact Match
check box is selected.
Encryption Strength
Minimum encryption strength used during communication with the authentication server.
Select
Low
,
Medium
, or
High
encryption strength. For each encryption strength, ciphers
are specified to identify the weakest cipher allowed.
Jetdirect Ceritificate
A self-signed HP Jetdirect certificate is pre-installed. To install a replacement, click
Configure
.
CA Certificate
To validate the authentication server's identity, the authentication server's certificate or a
CA (or “Root”) certificate must be installed on the print server. This CA certificate must be
issued by the certificate authority who signed the authentication server's certificate.
To configure or install a CA certificate, click
Configure
.
Authentication Behavior:
Reauthenticate on Apply
Control authentication when you click
Apply
on this page, assuming valid configuration
entries were made.
NOTE:
Does not apply to security or other configuration wizards. Changes to parameters
through a wizard always causes the print server to re-authenticate.
If disabled (default), the print server does not attempt re-authentication unless
configuration changes cause the print server to disconnect and reconnect to the network.
If enabled, the print server always attempts to re-authenticate using the configuration
values.
Restore Defaults
Restore 802.1X configuration settings to factory default values.
IPsec/Firewall
Configure or view the IPsec or Firewall policy for the print server. You can enable or disable IPsec/
Firewall operation on the print server, and configure the
default
rule for IP packets that are not covered
by IPsec/Firewall rules.
94
Chapter 4
Embedded Web server (V.38.xx)
ENWW