Configuring Settings For Verifying The Active Directory Certificate; [Certificate Verification Setting]; [Certificate Verification Settings] - Konica Minolta AU-211P User Manual

Authentication unit
Hide thumbs Also See for AU-211P:
Table of Contents

Advertisement

2.3
Pre-Setting
2.3.6

Configuring Settings for Verifying the Active Directory Certificate

Configure the certificate verification settings to verify the Active Directory certificate when communicating
with Active Directory.

[Certificate Verification Setting]

Select [Utility] - [Administrator] - [User Auth/Account Track] - [Certificate Verification Setting], and configure
the following settings.
Item
[Verify Validity Period]
[Check Root Signature]
[Check CRL Expiration]
[Check OCSP Expiration]

[Certificate Verification Settings]

Select [Security] - [Certificate Verification Settings] in the administrator mode of Web Connection, and con-
figure the following settings.
Item
[Certificate Verification Set-
tings]
[Timeout]
[OCSP Service]
[Proxy Settings]
d
Reference
For details on how to use Web Connection, refer to the User's Guide (Web Management Tool) supplied with
the MFP.
AU-211P
Description
Select whether to verify that the certificate is within the validity period.
Select whether to check the root signature.
To check the root signature, view the external certificates managed on
the MFP. For details on how to register an external certificate in the MFP,
refer to "[External Certificate Setting] (p. 2-9)".
Select whether to check that the certificate is not expired in the CRL (Cer-
tificate Revocation List).
Select whether to check that the certificate is not expired in the OCSP
service.
For details on the OCSP service setting procedure, refer to "[Certificate
Verification Settings] (p. 2-8)".
Description
When verifying the reliability of the peer's certificate, set this option to ON
(default: ON).
Change the time-out time of the certificate expiration confirmation if nec-
essary (default: [30] sec.).
Using the Online Certificate Status Protocol (OCSP) service enables you
to check online whether or not the certificate has expired.
When using the OCSP service, set this option to ON. Also, enter the URL
of the OCSP service (using up to 511 characters).
If [URL] is left blank, the URL of the OCSP service embedded in the cer-
tificate will be used.
When a proxy server is installed in your environment, register the proxy
server.
[Proxy Server Address]: Enter the proxy server address. When speci-
fying the host name instead of the address, select the [Please check
to enter host name.] check box.
[Proxy Server Port Number]: If necessary, change the proxy server
port number (default: [8080]).
[User Name]: Enter the user name used for proxy authentication (us-
ing up to 63 characters).
[Password]: Enter the password used for proxy authentication (using
up to 63 characters).
[Address not using Proxy Server]: Enter the address with no proxy
server used as needed. When specifying the host name instead of the
address, select the [Please check to enter host name.] check box.
2
2-8

Advertisement

Table of Contents
loading

Table of Contents