Lexmark MX822 Embedded Web Server Administrator s Guide - Page 31

Securing network connections

Page 31 highlights

Lexmark Confidential until announced Securing printers 31 Securing printers Note: For information on the latest security advisories for Lexmark products, go to http://support.lexmark.com/alerts. Securing network connections Configuring TCP/IP port access settings You can control your network device activities by configuring your device to filter out traffic on specific network connections. Protocols (such as FTP, HTTP, and Telnet) can be disabled. Port filtering on devices disables network connections individually. When a port is closed, a device does not respond to traffic on the specified port whether the corresponding network application is enabled. We recommend closing any ports that you do not plan to use under standard operation by clearing them. 1 From the Embedded Web Server, click Settings > Network/Ports > TCP/IP > TCP/IP Port Access. 2 Enable the access to the TCP/IP ports. 3 Click Save. Note: For more information on each port, contact your system administrator. Configuring IP Security settings Apply IP Security (IPsec) between the printer and the workstation or server to secure traffic between the systems with a strong encryption. The printers support IPsec with preshared keys (PSK) and certificates. You can use both options simultaneously. When using PSK authentication, printers are configured to establish a secure IPsec connection with up to seven other systems. The printers and systems are configured with a pass phrase that is used to authenticate the systems and to encrypt the data. When using the CA certificate authentication, printers are configured to establish a secure IPsec connection with up to five systems or subnets. Printers exchange data securely with many systems, and the process is integrated with a PKI or CA infrastructure. Certificates provide a robust and scalable solution, without configuring or managing keys and pass phrases. 1 From the Embedded Web Server, click Settings > Network/Ports > IPSec. 2 Select Enable IPSec. 3 Configure the following settings to specify the encryption and authentication methods of the printer: • Base Configuration • DH (Diffie‑Hellman) Group Proposal • Proposed Encryption method • Proposed Authentication Method • IPSec Device Certificate

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71

Securing printers
Note:
For information on the latest security advisories for Lexmark products, go to
.
Securing network connections
Configuring TCP/IP port access settings
You can control your network device activities by configuring your device to filter out traffic on specific network
connections. Protocols (such as FTP, HTTP, and Telnet) can be disabled.
Port filtering on devices disables network connections individually. When a port is closed, a device does not
respond to traffic on the specified port whether the corresponding network application is enabled.
We recommend closing any ports that you do not plan to use under standard operation by clearing them.
1
From the Embedded Web Server, click
Settings
>
Network/Ports
>
TCP/IP
>
TCP/IP Port Access
.
2
Enable the access to the TCP/IP ports.
3
Click
Save
.
Note:
For more information on each port, contact your system administrator.
Configuring IP Security settings
Apply IP Security (IPsec) between the printer and the workstation or server to secure traffic between the systems
with a strong encryption. The printers support IPsec with preshared keys (PSK) and certificates. You can use
both options simultaneously.
When using PSK authentication, printers are configured to establish a secure IPsec connection with up to seven
other systems. The printers and systems are configured with a pass phrase that is used to authenticate the
systems and to encrypt the data.
When using the CA certificate authentication, printers are configured to establish a secure IPsec connection
with up to five systems or subnets. Printers exchange data securely with many systems, and the process is
integrated with a PKI or CA infrastructure. Certificates provide a robust and scalable solution, without
configuring or managing keys and pass phrases.
1
From the Embedded Web Server, click
Settings
>
Network/Ports
>
IPSec
.
2
Select
Enable IPSec
.
3
Configure the following settings to specify the encryption and authentication methods of the printer:
Base Configuration
DH (Diffie
Hellman) Group Proposal
Proposed Encryption method
Proposed Authentication Method
IPSec Device Certificate
Lexmark Confidential until announced
Securing printers
31