
AU-211P
2-8
2.3
Pre-Setting
2
2.3.6
Configuring Settings for Verifying the Active Directory Certificate
Configure the certificate verification settings to verify the Active Directory certificate when communicating
with Active Directory.
[Certificate Verification Setting]
Select [Utility] - [Administrator] - [User Auth/Account Track] - [Certificate Verification Setting], and configure
the following settings.
[Certificate Verification Settings]
Select [Security] - [Certificate Verification Settings] in the administrator mode of
Web Connection
, and con-
figure the following settings.
d
Reference
For details on how to use
Web Connection
, refer to the User’s Guide (Web Management Tool) supplied with
the MFP.
Item
Description
[Verify Validity Period]
Select whether to verify that the certificate is within the validity period.
[Check Root Signature]
Select whether to check the root signature.
To check the root signature, view the external certificates managed on
the MFP. For details on how to register an external certificate in the MFP,
refer to "[External Certificate Setting] (p. 2-9)".
[Check CRL Expiration]
Select whether to check that the certificate is not expired in the CRL (Cer-
tificate Revocation List).
[Check OCSP Expiration]
Select whether to check that the certificate is not expired in the OCSP
service.
For details on the OCSP service setting procedure, refer to "[Certificate
Verification Settings] (p. 2-8)".
Item
Description
[Certificate Verification Set-
tings]
When verifying the reliability of the peer's certificate, set this option to ON
(default: ON).
[Timeout]
Change the time-out time of the certificate expiration confirmation if nec-
essary (default: [30] sec.).
[OCSP Service]
Using the Online Certificate Status Protocol (OCSP) service enables you
to check online whether or not the certificate has expired.
When using the OCSP service, set this option to ON. Also, enter the URL
of the OCSP service (using up to 511 characters).
If [URL] is left blank, the URL of the OCSP service embedded in the cer-
tificate will be used.
[Proxy Settings]
When a proxy server is installed in your environment, register the proxy
server.
•
[Proxy Server Address]: Enter the proxy server address. When speci-
fying the host name instead of the address, select the [Please check
to enter host name.] check box.
•
[Proxy Server Port Number]: If necessary, change the proxy server
port number (default: [8080]).
•
[User Name]: Enter the user name used for proxy authentication (us-
ing up to 63 characters).
•
[Password]: Enter the password used for proxy authentication (using
up to 63 characters).
•
[Address not using Proxy Server]: Enter the address with no proxy
server used as needed. When specifying the host name instead of the
address, select the [Please check to enter host name.] check box.
Summary of Contents for AU-211P
Page 1: ...User s Guide Authentication Unit AU 211P...
Page 5: ...1 Introduction...
Page 7: ...2 Getting Started...
Page 17: ...3 How to Use the Authentication Unit...
Page 46: ...4 Added or Changed Setting Information...
Page 50: ...5 Appendix...
Page 52: ...AA2J 9635 00 2019 6 2015 http konicaminolta com...