Configuring IPsec
For communication security, this machine supports IPsec. IPsec transmits secure data packets at the IP
protocol level using the shared key encryption method, where both the sender and receiver retain the
same key. This machine has two methods that you can use to specify the shared encryption key for both
parties: encryption key auto exchange and encryption key manual settings. Using the auto exchange
setting, you can renew the shared key exchange settings within a specified validity period, and achieve
higher transmission security.
• When "Inactive" is specified for "Exclude HTTPS Communication", access to Web Image Monitor
can be lost if the key settings are improperly configured. In order to prevent this, you can specify
IPsec to exclude HTTPS transmission by selecting "Active". When you want to include HTTPS
transmission, we recommend that you select "Inactive" for "Exclude HTTPS Communication" after
confirming that IPsec is properly configured. When "Active" is selected for "Exclude HTTPS
Communication", even though HTTPS transmission is not targeted by IPsec, Web Image Monitor
might become unusable when TCP is targeted by IPsec from the computer side. If you cannot
access Web Image Monitor due to IPsec configuration problems, disable IPsec in System Settings
on the control panel, and then access Web Image Monitor. For details about enabling and
disabling IPsec using the control panel, see "System Settings", Connecting the Machine/ System
Settings.
• IPsec is not applied to data obtained through DHCP, DNS, or WINS.
• IPsec for IPv4 is supported by Windows XP SP2 and Windows Server 2003/2003 R2. IPsec for
both IPv4 and IPv6 is supported by Windows Vista/7, Windows Server 2008/2008 R2, Mac OS
X 10.4.8 and later, Red Hat Enterprise Linux WS 4.0 and Solaris 10. However, some setting items
are not supported depending on the operating system. Make sure the IPsec settings you specify are
consistent with the operating system's IPsec settings.
Encryption and Authentication by IPsec
IPsec consists of two main functions: the encryption function, which ensures the confidentiality of data,
and the authentication function, which verifies the sender of the data and the data's integrity. This
machine's IPsec function supports two security protocols: the ESP protocol, which enables both of the
IPsec functions at the same time, and the AH protocol, which enables only the authentication function.
ESP protocol
The ESP protocol provides secure transmission through both encryption and authentication. This
protocol does not provide header authentication.
• For successful encryption, both the sender and receiver must specify the same encryption
algorithm and encryption key. If you use the encryption key auto exchange method, the
encryption algorithm and encryption key are specified automatically.
Configuring IPsec
149
Summary of Contents for Aficio MP C3002
Page 7: ...6 ...
Page 15: ...1 Manuals Provided with This Machine 14 ...
Page 39: ...2 Safety Information 38 ...
Page 51: ...3 Information for This Machine 50 ...
Page 54: ...Cover Paper Thickness 0 10 Body Paper Thickness 0 08 Pages in Book 0 Spine Width 0 2011 ...
Page 60: ......
Page 65: ...INDEX 235 5 ...
Page 86: ...1 What You Can Do with This Machine 26 ...
Page 126: ...2 Getting Started 66 ...
Page 128: ...7 When the copy job is finished press the Reset key to clear the settings 3 Copy 68 ...
Page 197: ...Storing the Scanned Documents to a USB Flash Memory or SC Card 6 126D ...
Page 201: ...7 Document Server 130 ...
Page 205: ...8 Web Image Monitor 134 ...
Page 235: ...9 Adding Paper and Toner 164 ...
Page 303: ...10 Troubleshooting 232 ...
Page 309: ...MEMO 238 ...
Page 310: ...MEMO 239 ...
Page 311: ...MEMO 240 EN GB EN US EN AU D143 ...
Page 312: ... 2011 ...
Page 313: ...GB EN D143 7003 US EN AU EN ...
Page 320: ......
Page 360: ...3 Installing the Scanner Driver 40 ...
Page 372: ...5 Troubleshooting 52 ...
Page 378: ...6 Installing the Printer Driver Under Mac OS X 58 ...
Page 382: ...3 Quit uninstaller 7 Appendix 62 ...
Page 386: ...MEMO 66 ...
Page 387: ...MEMO 67 ...
Page 388: ...MEMO 68 EN GB EN US EN AU D143 7038 ...
Page 389: ......
Page 390: ...EN GB EN US EN AU D143 7038 2011 ...
Page 392: ......
Page 398: ...6 ...
Page 440: ...MEMO 48 EN GB EN US EN AU D143 7042 ...
Page 441: ......
Page 442: ...EN GB EN US EN AU D143 7042 2011 ...
Page 444: ......
Page 454: ...10 ...
Page 472: ...1 Getting Started 28 ...
Page 540: ...3 Restricting Machine Usage 96 ...
Page 560: ...4 Preventing Leakage of Information from Machines 116 ...
Page 717: ...7 Press Yes 8 Log out Limiting Machine Operations to Customers Only 273 ...
Page 724: ...7 Managing the Machine 280 ...
Page 829: ......
Page 830: ...EN GB EN US EN AU D143 7040 2011 ...