HP Digital Sender Flow 8500 User Guide - Page 53

Manage certificates, Load a certificate, Load a certificate revocation list (CRL)

Page 53 highlights

Manage certificates The product has a built-in self-signed certificate, which allows for encryption and a reasonable level of trust for network communications with entities such as the LDAP server (communication that can include user names and passwords). However, some networks require trusted certificates. In these cases, you might be required to install a certificate from the network certificate authority. The certificate manager also allows you to load certificate revocation lists (CRL). Load a certificate 1. From a Web browser, open the Embedded Web Server by typing the IP address of the product. 2. On the main Embedded Web Server page, click the Security tab, and then select the Certificate Management entry. NOTE: If the Certificate Management page is unavailable, update the product firmware. 3. Under Install Certificate, click Browse... to locate the certificate you want to load. NOTE: Find certificates at the location where a network administrator created them. If the certificate you select is password-protected, you will need to enter the certificate password. 4. Click Import to import the certificate. The certificate will appear in the certificates list after it is loaded. Load a certificate revocation list (CRL) 1. From a Web browser, open the Embedded Web Server by typing the IP address of the product. 2. On the main EWS page, click the Security entry, and then select the Certificate Management entry. NOTE: If the Certificate Management page is unavailable, update the product firmware. 3. Under Install Certificate, click Browse... to locate the CRL to load. 4. Click Import to import the CRL. The CRL will appear in the certificate revocation list after it is loaded. Authentication and authorization You can secure access to various parts of the control panel menu by establishing passwords. These passwords can be created to be local to the product, or can be obtained from the network by configuring Windows or LDAP server information. To configure these settings using the Embedded Web Server, follow these steps. 1. In the Embedded Web Server, click the Security tab, and then click the Access Control link. 2. Configure access control options. ● Enable and Configure Sign In Methods. This section allows the administrator to configure the Windows or LDAP network settings. The product uses these settings to obtain user information from the server. ● Sign In and Permission Policies. This section allows the administrator to manage product permissions. By default, the product will support Guest, Administrator, and User permission sets. The administrator can add permission sets, and can configure which sign-in method to use on control panel applications. ENWW Security features 45

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146

Manage certificates
The product has a built-in self-signed certificate, which allows for encryption and a reasonable level of trust
for network communications with entities such as the LDAP server (communication that can include user names
and passwords). However, some networks require trusted certificates. In these cases, you might be required to
install a certificate from the network certificate authority.
The certificate manager also allows you to load certificate revocation lists (CRL).
Load a certificate
1.
From a Web browser, open the Embedded Web Server by typing the IP address of the product.
2.
On the main Embedded Web Server page, click the
Security
tab, and then select the
Certificate
Management
entry.
NOTE:
If the
Certificate Management
page is unavailable, update the product firmware.
3.
Under
Install Certificate
, click
Browse...
to locate the certificate you want to load.
NOTE:
Find certificates at the location where a network administrator created them. If the certificate
you select is password-protected, you will need to enter the certificate password.
4.
Click
Import
to import the certificate. The certificate will appear in the certificates list after it is loaded.
Load a certificate revocation list (CRL)
1.
From a Web browser, open the Embedded Web Server by typing the IP address of the product.
2.
On the main EWS page, click the
Security
entry, and then select the
Certificate Management
entry.
NOTE:
If the Certificate Management page is unavailable, update the product firmware.
3.
Under
Install Certificate
, click
Browse...
to locate the CRL to load.
4.
Click
Import
to import the CRL. The CRL will appear in the certificate revocation list after it is loaded.
Authentication and authorization
You can secure access to various parts of the control panel menu by establishing passwords. These passwords
can be created to be local to the product, or can be obtained from the network by configuring Windows or LDAP
server information.
To configure these settings using the Embedded Web Server, follow these steps.
1.
In the Embedded Web Server, click the
Security
tab, and then click the
Access Control
link.
2.
Configure access control options.
Enable and Configure Sign In Methods
. This section allows the administrator to configure the
Windows or LDAP network settings. The product uses these settings to obtain user information from
the server.
Sign In and Permission Policies
. This section allows the administrator to manage product
permissions. By default, the product will support Guest, Administrator, and User permission sets.
The administrator can add permission sets, and can configure which sign-in method to use on control
panel applications.
ENWW
Security features
45