13 Security - Encryption/Digital Signature
298
Encryption of HTTP Communications from the Machine to a Remote Server (Client
Certificate)
The SSL/TLS suite of protocols is used to encrypt HTTP communications with a remote
server.
No client certificate is typically required for this activity. However, if a remote server is
set to require an SSL client certificate, an SSL/TLS client certificate must be registered
on the machine.
Digital certificates imported from a Certificate Authority can be used as SSL/TLS
certificates on the machine’s HTTP server.
NOTE:
When Remote Server Certificate Validation is enabled, under [SSL/TLS
Settings] in CentreWare Internet Services, the root certificate of the remote server
must be registered to the machine (imported with Internet Services) to verify the digital
certificate.
E-mail Encryption/Digital Signature
S/MIME certificates, imported from a Certificate Authority (in PKCS7 format), can be
used on the machine’s HTTP server for e-mail encryption.
To import S/MIME certificates, use [Machine Digital Certificate Management] in the
[Security] folder on the [Properties] page of CentreWare Internet Services.
Encryption/Digital Signature of Scanned Files (PDF/XPS Documents)
While no digital signatures are required to encrypt PDF and XPS documents, these
documents can be signed with imported PKCS12 digital signatures.
When digital signatures are added to PDF or XPS documents, scan file certificates
imported to the machine from a Certificate Authority are typically used.
To import PKCS12 scan file certificates, use [Machine Digital Certificate Management]
in the [Security] folder on the [Properties] page of CentreWare Internet Services.
IPsec
IPsec (typically used to encrypt FTP) can be enabled from the [Security] folder on the
[Properties] page of CentreWare Internet Services.
Configuration of HTTPS (SSL/TLS) Communication Encryption
Installation Overview
Configuration on the Machine
Two methods are available depending on the type of certificate.
- Create a self-signed certificate on the machine with CentreWare Internet Services,
and enable HTTPS. This method is used primarily for server certificates.
- Enable HTTPS, and import a signed certificate from a Certificate Authority using
[Machine Digital Certificate Management] in the [Security] folder on the [Properties]
page of CentreWare Internet Services.
NOTE:
To see [Machine Digital Certificate Management], at least one certificate must
have been created and stored on the machine. This is one of the reasons for creating
a self-signed certificate.
Содержание WORKCENTER 5222
Страница 1: ...User Guide ME3612E4 1 System Administration Guide XE3022EN0 1 ...
Страница 12: ...12 ...
Страница 62: ...5 Machine Status 62 ...
Страница 266: ...8 Printer Environment Settings 266 ...
Страница 274: ...9 E mail Environment Settings 274 ...
Страница 340: ...14 Authentication and Account Administration 340 ...
Страница 433: ...Xerox Extensible Interface Platform XEIP 433 f Click Apply EIP applications can now register to the machine ...
Страница 434: ...16 Appendix 434 ...