Konica Minolta bizhub C227 bizhub C287/C227 Security Operations User Manual - Page 18

Encrypting communications, Print functions, IPP printing

Page 18 highlights

1.4 Miscellaneous 1 - Do not access any other site once you have logged onto the machine with the Web Connection. Accessing any other site or a link included in e-mail, in particular, can lead to execution of an unintended type of operation. Whenever access to any other site is necessary, be sure first to log off from the machine through the Web Connection. - Using the same password a number of times increases the risk of spoofing. - If a web browser such as Internet Explorer is used on the client PC side, "TLS v1" should be used for the SSL setting. - Optional applications not described in this User's Guide are not covered by certification of ISO15408. Encrypting communications The following are the cryptographic algorithms of key exchange and communications encryption systems supported in generation of encryption keys. - TLS_RSA_WITH_3DES_EDE_CBC_SHA - TLS_RSA_WITH_AES_128_CBC_SHA - TLS_DHE_RSA_WITH_3DES_EDE_CBC_SHA - TLS_DHE_RSA_WITH_AES_256_CBC_SHA NOTICE The administrator should make sure that SSL encryption communication is not performed with the SSL set in SSL v3. Do not use an SSL certificate that is electronically signed by MD5, as an increased risk results of data to be protected being tampered with or leaked. To eliminate the risk of the data to be protected being tampered with or leaked, refer to the recommended ciphers list disclosed by, for example, NIST and CRYPTREC and use the appropriate cryptographic technique. Use the following browsers to ensure SSL encryption communication with appropriate strength. Use of any of the following browsers achieves SSL encryption communication that ensures confidentiality of the image data transmitted and received. Microsoft Internet Explorer - 9/10/11 Mozilla Firefox - 20 or later Microsoft Internet Explorer 11 is used for the ISO15408 evaluation for this machine. Print functions Only the following procedures are guaranteed for the print functions performed from the client PC. - Use IPPS printing for the print functions performed using the printer driver. - Use direct printing from the Web Connection for the print functions not performed via the printer driver. IPP printing IPP (Internet Printing Protocol) is a function that allows Secure Print documents and image data stored in boxes to be printed via the Internet by using the HTTP (HyperText Transfer Protocol) of the TCP/IP Protocol. IPPS (IPP over SSL/TLS) is the type of IPP that performs the SSL encryption communication. To perform IPPS printing, the printer driver must be installed. Start the printer addition wizard of the Windows Vista/7/8/8.1/Server 2008/Server 2008 R2/Server 2012/Server 2012 R2 and type the IP address of this machine in the following format in the "URL" field. https://[host name].[domain name]/ipp For [host name] and [domain name], specify the names set with the DNS server. bizhub C287/C227 1-14

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158

bizhub C287/C227
1-14
1.4
Miscellaneous
1
-
Do not access any other site once you have logged onto the machine with the
Web Connection
. Ac-
cessing any other site or a link included in e-mail, in particular, can lead to execution of an unintended
type of operation. Whenever access to any other site is necessary, be sure first to log off from the ma-
chine through the
Web Connection
.
-
Using the same password a number of times increases the risk of spoofing.
-
If a web browser such as Internet Explorer is used on the client PC side, "TLS v1" should be used for
the SSL setting.
-
Optional applications not described in this User’s Guide are not covered by certification of ISO15408.
Encrypting communications
The following are the cryptographic algorithms of key exchange and communications encryption systems
supported in generation of encryption keys.
-
TLS_RSA_WITH_3DES_EDE_CBC_SHA
-
TLS_RSA_WITH_AES_128_CBC_SHA
-
TLS_DHE_RSA_WITH_3DES_EDE_CBC_SHA
-
TLS_DHE_RSA_WITH_AES_256_CBC_SHA
NOTICE
The administrator should make sure that SSL encryption communication is not performed with the SSL set in
SSL v3.
Do not use an SSL certificate that is electronically signed by MD5, as an increased risk results of data to be
protected being tampered with or leaked.
To eliminate the risk of the data to be protected being tampered with or leaked, refer to the recommended
ciphers list disclosed by, for example, NIST and CRYPTREC and use the appropriate cryptographic tech-
nique.
Use the following browsers to ensure SSL encryption communication with appropriate strength. Use of any
of the following browsers achieves SSL encryption communication that ensures confidentiality of the image
data transmitted and received.
Microsoft Internet Explorer
-
9/10/11
Mozilla Firefox
-
20 or later
Microsoft Internet Explorer 11 is used for the ISO15408 evaluation for this machine.
Print functions
Only the following procedures are guaranteed for the print functions performed from the client PC.
-
Use IPPS printing for the print functions performed using the printer driver.
-
Use direct printing from the
Web Connection
for the print functions not performed via the printer driver.
IPP printing
IPP (Internet Printing Protocol) is a function that allows Secure Print documents and image data stored in
boxes to be printed via the Internet by using the HTTP (HyperText Transfer Protocol) of the TCP/IP Protocol.
IPPS (IPP over SSL/TLS) is the type of IPP that performs the SSL encryption communication.
<Installing printer driver>
To perform IPPS printing, the printer driver must be installed. Start the printer addition wizard of the Windows
Vista/7/8/8.1/Server 2008/Server 2008 R2/Server 2012/Server 2012 R2 and type the IP address of this ma-
chine in the following format in the "URL" field.
https://[host name].[domain name]/ipp
For [host name] and [domain name], specify the names set with the DNS server.