Appendix A: Administration Features
173
Security Settings
Enable/Disable FIPS Mode and Certificate Settings
The User Station optionally uses a FIPS 140-2 encryption module that supports
the Security Requirements for Cryptographic Modules of the Federal
Information Processing Standards (FIPS), which is defined in the
FIPS PUB 140-2
(http://www.nist.gov/cmvp/), Annex A: Approved Security Functions
. These
standards are used to protect the Federal government's sensitive information
with the cryptographic-based security systems in the U.S. and Canada.
The Check KX Device Certificates option allows Dominion User Station to
enforce SSL certificate checks in communication with the KX3 for both port
information and KVM sessions.
When FIPS mode is enabled, all encrypted connections to KX III KVM switches
are processed using the FIPS accredited cryptographic code and the
authenticity of those KVM switches is checked via their certificate chain. When
Check KX Device Certificate is enabled, authenticity of KVM switches is checked
via their certificate chain. You must install the trusted device- or
root-certificate of each KX III KVM switch on the User Station, or the
connection to the KVM switches fails. See
Trusted Certificates
(on page 166).
Important: In the FIPS mode, the User Station CANNOT connect to any targets
on a KX3 or CC-SG with Security setting TLS 1.2 only.
Note: The LDAPS connections, which have the encrypted LDAP enabled, are NOT
using the FIPS accredited cryptographic code.
To enable or disable the FIPS mode and configure certificate settings:
1.
Click Administration > Security Settings. The Security Settings page opens.
indicates the setting is enabled.
Содержание Raritan Dominion User Station
Страница 10: ......
Страница 23: ...Appendix A Getting Started 13 DKX4 UST DKX3 UST Version 2 DKX3 UST Version 1 1 Power ON all devices...
Страница 63: ...Appendix A Managing Targets and Access Methods 53 VNC Access Settings...
Страница 64: ...Appendix A Managing Targets and Access Methods 54 SSH Access Settings...
Страница 65: ...Appendix A Managing Targets and Access Methods 55 WEB Access Settings...
Страница 159: ...Appendix A Administration Features 149 5 Enter the bind credentials in the Bind section...
Страница 200: ...Appendix A Administration Features 190 KX3 User Station 4 Monitor Vertical Configuration Example...
Страница 204: ...Appendix A Administration Features 194 9 Click Save...
Страница 211: ...Appendix A Maintenance Features 201 6 Click OK in the confirmation dialog...
Страница 269: ...Appendix D API 259...
Страница 280: ......