HP 635n HP Jetdirect Print Server Administrator's Guide - Page 103

x Authentication, Use caution when changing the 802.1X authentication settings; you may

Page 103 highlights

Table 4-16 Other Protocols (continued) Item Description Enable or disable RCFG, a remote IPX configuration protocol used by older management tools to configure Novell NetWare parameters. Disabling RCFG does not affect direct mode printing using IPX/SPX. Disabling Telnet, FTP firmware upgrades, and RCFG is recommended. 802.1x Authentication (Full-featured print servers only) This page allows you to configure 802.1X authentication settings on the Jetdirect print server as required for client authentication on your network. In addition, you can reset the 802.1X authentication settings to factory-default values. CAUTION Use caution when changing the 802.1X authentication settings; you may lose your connection. If communication with the printer/MFP device is lost, you may need to reset the print server to a factory-default state and then reinstall the device. For most 802.1X networks, the infrastructure components (such as LAN switches) must use 802.1X protocols to control a port's access to the network. If these ports do not allow partial or guest access, the print server may need to be configured with your 802.1X parameters prior to connection. To configure initial 802.1X settings before connecting to your network, you can use an isolated LAN, or a direct computer connection using a cross-over cable. The supported 802.1X authentication protocols and associated configuration depend on the print server model and firmware version. Available configuration settings are listed in Table 4-17 802.1X Configuration Settings. Table 4-17 802.1X Configuration Settings Item Enable Protocols Description Enable (check) the supported protocols used for 802.1X authentication on your network. ■ PEAP: (Protected Extensible Authentication Protocol). PEAP uses digital certificates for network server authentication and passwords for client authentication. PEAP requires an EAP User Name, EAP Password, and CA Certificate. Dynamic encryption keys are also used. ■ EAP-TLS: (Extensible Authentication Protocol using Transport Layer Security, RFC 2716). EAP-TLS is a mutual authentication protocol based on digital certificates for authentication of both the client and the network authentication server. EAP-TLS requires an EAP User Name, Jetdirect certificate and CA certificate. Dynamic encryption keys are also used. User Name Password, Confirm Password Server ID Specify an EAP/802.1X user name (up to 128 characters maximum) for this device. The default user name is the default host name of the print server, NPIxxxxxx, where xxxxxx are the last six digits of the LAN hardware (MAC) address. Specify an EAP/802.1X password (up to 128 characters maximum) for this device. Enter the password again in the Confirm Password field to ensure it was properly entered. Specify the Server ID validation string that identifies and validates the authentication server. The Server ID string is specified on the digital certificate issued by a trusted Certificate Authority (CA) for the authentication server. The entry may be a partial string (right-most characters) )unless the Require Exact Match checkbox is enabled. ENWW Networking Tab 93

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194

Item
Description
Enable or disable RCFG, a remote IPX configuration protocol used by older
management tools to configure Novell NetWare parameters. Disabling RCFG does not
affect direct mode printing using IPX/SPX.
Disabling Telnet, FTP firmware upgrades, and RCFG is recommended.
802.1x Authentication
(Full-featured print servers only) This page allows you to configure 802.1X authentication settings on
the Jetdirect print server as required for client authentication on your network. In addition, you can
reset the 802.1X authentication settings to factory-default values.
CAUTION
Use caution when changing the 802.1X authentication settings; you may
lose your connection
. If communication with the printer/MFP device is lost, you may need to
reset the print server to a factory-default state and then reinstall the device.
For most 802.1X networks, the infrastructure components (such as LAN switches) must use 802.1X
protocols to control a port's access to the network. If these ports do not allow partial or guest access,
the print server may need to be configured with your 802.1X parameters prior to connection.
To configure initial 802.1X settings before connecting to your network, you can use an isolated LAN,
or a direct computer connection using a cross-over cable.
The supported 802.1X authentication protocols and associated configuration depend on the print
server model and firmware version. Available configuration settings are listed in
Table
4-17
802.1X
Configuration
Settings
.
Table 4-17
802.1X Configuration Settings
Item
Description
Enable Protocols
Enable (check) the supported protocols used for 802.1X authentication on your network.
PEAP
: (Protected Extensible Authentication Protocol). PEAP uses digital
certificates for network server authentication and passwords for client
authentication. PEAP requires an EAP User Name, EAP Password, and CA
Certificate. Dynamic encryption keys are also used.
EAP-TLS
: (Extensible Authentication Protocol using Transport Layer Security, RFC
2716). EAP-TLS is a mutual authentication protocol based on digital certificates for
authentication of both the client and the network authentication server. EAP-TLS
requires an EAP User Name, Jetdirect certificate and CA certificate. Dynamic
encryption keys are also used.
User Name
Specify an EAP/802.1X user name (up to 128 characters maximum) for this device. The
default user name is the default host name of the print server, NPIxxxxxx, where xxxxxx
are the last six digits of the LAN hardware (MAC) address.
Password, Confirm Password
Specify an EAP/802.1X password (up to 128 characters maximum) for this device.
Enter the password again in the Confirm Password field to ensure it was properly
entered.
Server ID
Specify the Server ID validation string that identifies and validates the authentication
server. The Server ID string is specified on the digital certificate issued by a trusted
Certificate Authority (CA) for the authentication server. The entry may be a partial string
(right-most characters) )unless the
Require Exact Match
checkbox is enabled.
Table 4-16
Other Protocols (continued)
ENWW
Networking Tab
93