Lexmark X644E User's Guide - Page 119

Supporting IPSec (Internet Protocol Security), Administrative support, Disabling SNMPv1 and SNMPv2

Page 119 highlights

Administrative support SNMPv3 authentication and encryption has three levels of support: • No authentication and no encryption • Authentication with no encryption • Authentication and encryption Note: The selected level serves as a minimum level of protection. The MFP negotiates with the SNMPv3 requestor, and a higher level of protection may be agreed upon and used by both. 5 Indicate the setting for each sub-item as required for the network environment. 6 Click Submit. Disabling SNMPv1 and SNMPv2 1 Open a Web browser. In the address line, enter the IP address of the MFP being configured using the format: http://ip_address/. 2 Click Configuration. 3 Under Other Settings, click Network/Ports. 4 Click SNMP. 5 Click to clear the Enabled check box unless SNMPv1 and SNMPv2 are used in this environment. 6 Click Submit. Supporting IPSec (Internet Protocol Security) IP Security protocol provides authentication and encryption of communications at the network layer allowing all application and network communications over the IP protocol to be secure. IPSec can be set up between the MFP and up to five hosts, using both IPv4 and IPv6. To configure IPSec through the EWS: 1 Open a Web browser. In the address line, enter the IP address of the MFP being configured using the format: http://ip_address/. 2 Click Configuration. 3 Under Other Settings, click Network/Ports. 4 Click IPSec. Two types of authentication are supported for IPSec: • Shared Key Authentication-Any ASCII phrase shared among all the participating hosts. This is the easiest way to configure when only a few hosts on the network use IPSec. • Certificate Authentication-Allows any hosts or subnet of hosts to authenticate for IPSec. Each host must have a public/private key pair. Validate Peer Certificate is enabled by default, requiring each host to have a signed certificate. The certificate authority certificate must be installed. Each host must have its identifier in the Subject Alternate Name of the signed certificate. Note: After an MFP is configured for IPSec with a host, IPSec is required for any IP communication to take place. 5 Indicate the setting for each sub-item as required for the network environment. 6 Click Submit. Configuring the MFP 119

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148

Configuring the MFP
119
Administrative support
SNMPv3 authentication and encryption has three levels of support:
No authentication and no encryption
Authentication with no encryption
Authentication and encryption
Note:
The selected level serves as a minimum level of protection. The MFP negotiates with the SNMPv3
requestor, and a higher level of protection may be agreed upon and used by both.
5
Indicate the setting for each sub-item as required for the network environment.
6
Click
Submit
.
Disabling SNMPv1 and SNMPv2
1
Open a Web browser. In the address line, enter the IP address of the MFP being configured using the format:
http://ip_address/
.
2
Click
Configuration
.
3
Under Other Settings, click
Network/Ports
.
4
Click
SNMP
.
5
Click to clear the Enabled check box unless SNMPv1 and SNMPv2 are used in this environment.
6
Click
Submit
.
Supporting IPSec (Internet Protocol Security)
IP Security protocol provides authentication and encryption of communications at the network layer allowing all application
and network communications over the IP protocol to be secure. IPSec can be set up between the MFP and up to five hosts,
using both IPv4 and IPv6. To configure IPSec through the EWS:
1
Open a Web browser. In the address line, enter the IP address of the MFP being configured using the format:
http://ip_address/.
2
Click
Configuration
.
3
Under Other Settings, click
Network/Ports
.
4
Click
IPSec
.
Two types of authentication are supported for IPSec:
Shared Key Authentication
–Any ASCII phrase shared among all the participating hosts. This is the easiest way
to configure when only a few hosts on the network use IPSec.
Certificate Authentication
–Allows any hosts or subnet of hosts to authenticate for IPSec. Each host must have
a public/private key pair.
Validate Peer Certificate
is enabled by default, requiring each host to have a signed
certificate. The certificate authority certificate must be installed. Each host must have its identifier in the
Subject
Alternate Name
of the signed certificate.
Note:
After an MFP is configured for IPSec with a host, IPSec is required for any IP communication to take
place.
5
Indicate the setting for each sub-item as required for the network environment.
6
Click
Submit
.