Page 4
The booting restriction program is optional part and you can install it regardless of SecuwayCard 2000. SecuwayCard 2000 have the security policy and the key received from SecuwayCenter 2000 administrator.
Page 5
PCMCIA type of security token. File/Folder Encryption/Decryption If you log on the SecuwayCard 2000 Manager program, you can encrypt or decrypt the file or folder on the Windows Explorer without running any other program. You can select the way to encrypt or decrypt the file or folder between the “Password Method Encryption”...
Page 6
Various interfaces You can set the SecuwayCard 2000 user interface in 3 ways by cooperating with the SecuwayCenter 2000. If you want to hide the setting status of the SecuwayCard 2000 from the user, you can select the item that has no user interface on the SecuwayCenter 2000 and send it online.
!" Networking environment using Microsoft TCP/IP protocol stack !" Desktop PC or Note PC installed with PCMCIA card reader If you use Note PC, you can install the SecuwayCard 2000 in your Note PC without installing any other application program because PCMCIA card reader is already installed in Note PC basically.
Before Setting Up the SecuwayCard 2000 Checking the contents of the package When you unpack the SecuwayCard 2000 package box, you can find out the following things in the box. If any of them is not in the box or there is anything to be changed because it is damaged, contact to the dealer.
Page 9
SecuwayCard 2000. Installing the SecuwayCard 2000 in the computer Let’s see the way to install the SecuwayCard 2000 in the Note PC or Desktop PC. Installing the SecuwayCard 2000 in the Note PC If you are to install the SecuwayCard 2000 in the Note PC, follow...
Page 10
Chapter 3 Setting Up the SecuwayCard 2000 % In a few seconds, the installation process for the SecuwayCard 2000 driver is started. Select the “Automatic search for a better driver(Recommended)” and click [Next>] button. & After the operating system find out the driver for SecuwayCard 2000 on the CD-ROM and then the following message is displayed.
Page 11
' After the copying process of the SecuwayCard 2000 driver installation program is completed, the following message is displayed. Click the [Finish] button. ( The final step of driver installation process is started with the following message. To click [Yes] and reboot the computer is recommended at this time.
Page 12
Chapter 3 Setting Up the SecuwayCard 2000 ) After finishing the installation process of the SecuwayCard 2000 driver program, select the menu <Start> * <Settings> * <Control Panel>. + Then click the icon <System> on the Control Panel. On the <System Properties>...
Page 13
If the operating system provides the PnP(Plug & Play) function, you can install it just by insert the card in the slot. After installing the PCMCIA card reader, follow the steps of the installation process of the SecuwayCard 2000 hardware on the Note...
Page 14
Setting Up the SecuwayCard 2000 Installing the SecuwayCard 2000 software driver If you have finally installed the SecuwayCard 2000 hardware in your Note PC or Desktop PC, then you should install the software driver like the following. This guide shows you the case of using the operating system Windwos ME as an example.
Page 15
$ SecuwayCard 2000 program is provided with CD. Insert the SecuwayCard 2000 driver CD in the CD-ROM drive of PC. And click “setup.exe” among the files on the CD. Then the following screen is displayed. % Click [Next] button and then the <Software License Agreement> is displayed.
Page 16
' “Select Program Folder” screen is displayed. The screen is to add the program folder for the SecuwayCard 2000 program. Basically, “SecuwayCard 2000” is selected but you can select one of existing folders or set the new one. After setting the folder, click [Next>] button.
Page 17
[Finish] button. Then the computer is rebooted. After the rebooting, <Security Register Wizard> screen is displayed. You can log on the SecuwayCard 2000 Manager program and set the administration process only after you registering the security through the <Security Register Wizard>...
Page 18
* <SecuwayCard 2000> * <SecuwayCard 2000 Manager program> and then the <Security Register Wizard> program is displayed. ! If you are using the SecuwayCard 2000 Manager program want to remove and reinstall the program, you should do the online security registration again.
Page 19
Now let’s see the steps for online security registration using the <Security Register Wizard> program. # After copying the installation program and rebooting the system, the SecuwayCard 2000 displays the <Security Register Wizard> screen. Click [Next>] button after reading the “Security Token Initialize”...
Page 20
If the SecuwayCard 2000 is not installed in your computer when you register the security or the computer can not perceive the SecuwayCard 2000 which is installed, the following screen is displayed. After check and reinstall the SecuwayCard 2000 normally...
Page 21
Online Security Registration should be input on the “IP Addr” item. Online Register Profile Info This item is for input the Profile ID, Profile Index, and Profile Password that are used by the SecuwayCard 2000 while Online Security Registration.
Page 22
You should receive each value of these items from the SecuwayCenter 2000 administrator. If you input uncorrected values on these items, the Online Security Registration process is not executed. After input the Online Security Registration information, click the [Next>] button. &...
Page 23
<SecuwayCard 2000 Manager> log on screen is displayed like the following. For the detailed information of logging on and operating the <SecuwayCard 2000 Manager> program, see the Part 2 of this manual. Do not remove the SecuwayCard 2000 hardware from the PCMCIA card reader while doing the Online Security Registration.
Page 24
Chapter 5 Uninstalling the SecuwayCard 2000 This chapter describes the way to uninstall the SecuwayCard 2000 program because there are any problems on the program after installing it. You may not be able to uninstall the SecuwayCard 2000 manager program completely while running it. Close the program before uninstalling it.
Page 25
Using this program, only the user who encrypts using the MBR (Master Boot Record) and then log on the SecuwayCard 2000 can boot the system after decrypt the MBR information. The Booting Restriction Program is optional product and you can select if installing it or not.
Page 26
!" uninstall.exe : is used for removing the Booting Restriction Program. !" loader.img : is the Booting Restriction Program which allows to boot cooperating with the SecuwayCard 2000. !" win.com : is provided by the Booting Restriction Program and different from the one provided by the Windows program.
Page 27
# At first, boot the system with the safe mode. For booting with the safe mode, press F8 while the system is booting the Windows operating system after power on. $ Insert the SecuwayCard 2000 hardware in the PCMCIA slot of your computer and the Booting Restriction Program diskette in the diskette drive.
Page 28
10 times, the system is stopped running without removing the data on the harddisk drive. In this case, the SecuwayCard 2000 is initialized at this time and so you should receive the SecuwayCard 2000 security key from the SecuwayCenter 2000 manager again to use it.
Page 29
If you don’t input the log on name and password as you received from the SecuwayCenter 2000, the system will not boot. If you install the Boot Restriction Program on your computer, the system can’t boot without the SecuwayCard 2000 hardware.
Page 30
Chapter 6 Installing the Booting Restriction Program The Steps for removing the Booting Restriction Program The manager can remove the Booting Restriction Program anytime. To remove the Booting Restriction Program, you should do the process using the Master boot image file which is created when you install the program. # Insert the bootable disk in the diskette drive of your computer and boot the computer.
Page 31
To execute the “chgwin.bat” is like the following A:> chgwin.bat [ENTER] Then you can confirm the restoration process like the following. Del C :\WIN98\WIN.COM Copy C :\WIN98\WINA.COM C:\WIN98\WIN.COM Del C :\WIN98\WINA.COM You should follow the notices below when using the Booting Restriction Program.
<SecuwayCard Manager>. Then the following message requests you to input the user ID and password. Input the available ID and password received from the SecuwayCenter 2000 manager. When you click [OK] after input ID and password, you can log on the SecuwayCard 2000 program.
Page 34
$ While you’re logging on the SecuwayCard 2000 program, the following icon is placed on the bottom of the Windows. Click the icon then the main window of the SecuwayCard 2000 manager program is displayed.
Page 35
If you logging on the SecuwayCard 2000 Manager program for the first time after installing it If you logging on the SecuwayCard 2000 Manager program for the first time after installing it, the following confirm message is displayed. Click [OK] then the <Setting System Security Default Value>...
Page 36
Program To log off the SecuwayCard 2000 Manager Program, follow the instructions below. If you log off the SecuwayCard 2000 Manager Program, click the right button of the mouse while selecting the icon Then the following menu is displayed. Select <Exit(X)> from the menu. Then the following message is displayed.
Page 37
Using the security functions of SecuwayCard 2000, you can encrypt or decrypt the folder or file. Under the case that the multi users are registered on the SecuwayCard 2000 program, you can set if any users can access the file or folder and make the accessible user lists.
Page 38
Setting the Security Functions If you enter the password correctly, <Setting System Security Default Value> screen is displayed. When you log on SecuwayCard 2000 Manager program for the first time after install it, the<Setting System Security Default Value> screen is displayed.
Page 39
<Security File and Folder Property when closing Manager> This item is to set the file and folder property when closing SecuwayCard 2000 Manager program. The features of each option are like the following. Hide Security File and Folder If you select this option, encrypted file or folder are not displayed on the Windows Explorer after closing SecuwayCard 2000 Manager program.
Page 40
Chapter 2 Setting the Security Functions <Apply Property at System Security> This item is to select if set Security property differently each time when encrypt file or folder, or set the same Security property after setting it once. Always Apply System Security by Next Property If you select this option, the same Security property is adopt to file or folder when encrypt file or folder after setting it once.
Page 41
If you select “Password Method Encryption”, you should remember the password. If you forget the password, you can’t open the encrypted file or folder. About the way to encrypt or decrypt the file or folder, see the “ To encrypt or decrypt the folder” or “ To encrypt or decrypt the file” on this chapter.
Page 42
Chapter 2 Setting the Security Functions <Default Authority> This option is to set the access authority which is allotted to all the users commonly. For example, if you select “List Authority”, List Authority is allotted to all the users who are listed on the “Users”. <Individual Authority>...
Page 43
To encrypt the folder The way to encrypt the folder is like the following. # To encrypt the folder, you should install the SecuwayCard 2000 hardware and software in advance. Please read the Part 1 of this manual about the way to install SecuwayCard 2000 and check it is normally operated on your computer.
Page 44
Chapter 2 Setting the Security Functions % Run the Windows Explorer. Select the folder you want to encrypt on the Windows Explorer and then click the right button of the mouse. The submenu is displayed like the following. & Select <Folder Encryption>. The following message is displayed. Click [Yes].
Page 45
' Then the following screen to set the folder encryption is displayed. Select the encryption type. This option is to set the access authority which is allotted to all the users commonly. This option is to set the access authority which is allotted to the registered users individually...
Page 46
2-10 Chapter 2 Setting the Security Functions Password Method Encryption If you select this option, you can set the password differently each time when encrypt or decrypt the folder. If you select “Password Method Encryption” on the <Type> of <Folder Encryption> item, <Password> changes to blank space where you can input any password.
Page 47
! If you encrypt the folder, the files in the encrypted folder are encrypted automatically. Unauthorized user who does not log on the SecuwayCard 2000 Manager program with permitted password can’t read the files on the encrypted folder. But the extension of the file name and its icon is not changed.
Page 48
To decrypt the folder is nearly the same with the way to encrypt the folder. # Run the Windows Explorer while you are login on the SecuwayCard 2000 Manager program. $ Select the folder you want to decrypt on the Windows Explorer and then click the right button of the mouse.
Page 49
2-13 % Select <Folder Decryption>. Then the following message is displayed. Click [Yes]. & Then the folder is decrypted and the folder icon is changed to If you select “Auto Encryption” on the <Folder Encryption> item of the <Setting of Folder Encryption> screen, you need not enter any password to decrypt the folder.
Page 50
To encrypt the file The way to encrypt the file is like the following. # To encrypt the file, you should install the SecuwayCard 2000 hardware and software in advance. Please read the Part 1 of this manual about the way to install SecuwayCard 2000 and check it is normally operated on your computer.
Page 51
2-15 % Run the Windows Explorer. Select the file you want to encrypt on the Windows Explorer and then click the right button of the mouse. The submenu is displayed like the following. & Select <File Encryption>. Then the following message is displayed. Click [Yes].
Page 52
2-16 Chapter 2 Setting the Security Functions ' Then the following message to encrypt the file is displayed. Select the encryption type. This option is to set the access authority which is allotted to all the users commonly. This option is to set the access authority which is allotted to the registered users individually...
Page 53
2-17 Password Method Encryption If you select this option, you can set the password differently each time when encrypt or decrypt the file. If you select “Password Method Encryption” on the <Type> of <File Encryption> item, <Password> changes to blank space where you can input any password. If you select “Password Method Encryption”, you should remember the password.
Page 54
“BECK.ASF.fes”. ! If the file is encrypted, only the authorized user who log on the SecuwayCard 2000 Manager program with the permitted password can read the file. ! If the folder in which you want to encrypt the file is already encrypted, re-encryption process for the file can not be executed.
Page 55
To decrypt the file is nearly the same with the way to encrypt the file. # Run the Windows Explorer while you are login on the SecuwayCard 2000 Manager program. $ Select the file you want to decrypt on the Windows Explorer and then click the right button of the mouse.
Page 56
2-20 Chapter 2 Setting the Security Functions % Select <File Decryption>. Then the following message is displayed. Click [Yes]. & Then the file is decrypted and the file icon is return to the original one. If you select “Auto Encryption” on the <File Encryption> item of the <Setting of File Encryption>...
Page 57
2-21 Confirm the access control of the unauthorized users. If the unauthorized users who do not log on with permitted password try to decrypt the file, the following error message is displayed and protect from decrypting it. If the unauthorized users, who do not log on with permitted password try to copy, move and delete the encrypted file or folder, the error message is displayed and protect from doing the process.
Page 58
2-22 Chapter 2 Setting the Security Functions To copy or delete the encrypted file or folder This section describes the way to copy or delete the encrypted file or folder. To copy the encrypted file or folder You cannot copy the encrypted file or folder with the same way of general file or folder.
Page 59
2-23 $ Select <Encrypted File Copy> Then the screen to select the folder to be copied is displayed. % Select the folder to be copied and click [OK] button. & Then the encrypted file is copying and the following message is displayed after copying is completed.
Page 60
2-24 Chapter 2 Setting the Security Functions To delete the encrypted file or the file in the encrypted folder This section tells you the way to delete the encrypted file or the file in the encrypted folder. To delete the encrypted file There are 3 kinds of ways to delete the encrypted files.
Page 61
2-25 To delete the encrypted folder or file in the encrypted folder To delete the encrypted folder or file in the encrypted folder, press [Delete] key while pressing [Shift] key on the keyboard after selecting the file or folder you want to delete. The encrypted folder or file in the encrypted folder cannot be deleted by [Delete] key only.
Page 62
2-26 Chapter 2 Setting the Security Functions Attachment File Creation Attachment File Creation? <Attachment File Creation> means the transformation process from encrypted file to the one that can be sent via Email or other application program. To run the Attachment File Creation, do the following steps. # Select the encrypted file you want to send via Email or other Application program and click the right button of the mouse.
Page 63
2-27 $ If you select “Password Method Encryption” on the <File Encryption> item of the <Setting of File Encryption> screen, you can run the <Attachment File Creation> command. In this case the following message is displayed if you run the <Attachment File Creation>.
Page 64
2-28 Chapter 2 Setting the Security Functions & The user who receive the file created using “Attachment file creation” command select the file received and click the right button of the mouse and then select the “File restoration for Attachment” command. ' If the following message is displayed, the restoration of the encrypted file for attachment is completed.
Page 65
2-29 ( Click [OK] and if click the restored file to open it, the following message to enter the password is displayed. At this time, you should enter the password you set when encrypt the file for the first time. So, the user who sends the encrypted file should give the password to the user who receives the file.
SecuwayCard 2000 Manager program Menu. Click the icon on the bottom of the Windows after logging on the SecuwayCard 2000 Manager program and then the following message is displayed The functions available on the SecuwayCard 2000 Manager program are like the following.
Page 67
SecuwayCard 2000 Manager Program Menu Configurations You can configure the necessary circumstances while using the SecuwayCard 2000 Manager program like screen saver setting and etc using the <Configurations> command of the <System> menu. If you want to use the <Screen Saver> command of the <System>...
Page 68
<Screen Saver Setup> tab There are 3 kinds of tabs on the <Configurations>. The features and options of the first tab <Screen Saver Setup> are like the following. <Screen Saver(S)> The screen saver provides the locking function that prevent unauthorized user from using the computer while the authorized user is leaving the computer.
Page 69
Chapter 3 SecuwayCard 2000 Manager Program Menu <Settings> This item is available to select if you can select the screen image you want to display while the Screen Saver is running like the “Windows Logo”. The Screen Saver function provided by the SecuwayCard 2000 is different from the one provided by the Windows Me.
Page 70
<Center IP Set> tab Let’s see the function of <Center IP Set> tab. The features and available values of the <Center IP Set> tab are like the following. !" Pri Center IP : The IP address you set on the “Online Security Registration”...
Page 71
The features of the items of <The Option> tab are like the following. Starting together with Windows booting If you select this item, the SecuwayCard 2000 program is executed automatically when the Windows program is booting. If you don’t select this item, you should execute the SecuwayCard 2000 program whenever you need after the Windows program is booting.
Page 72
Automatic Password input If you don’t select this item, you should input the password whenever you log on the SecuwayCard 2000. If you select this item, you don’t need input the password whenever you log on and the SecuwayCard 2000 is directly running because the password is input automatically.
If you want to use the <Screen Saver> command of the <System> menu, you should set to use the screen saver function on the <Configurations> menu in advance. If the SecuwayCard 2000 user does not enter any key or mouse action in the designated time, the screen saver is executed.
Page 74
Then the screen to input the user ID and password is displayed. If you don’t input the same password with the one you use to log on the SecuwayCard 2000, you can’t stop the screen saver and use the SecuwayCard 2000 Manager program. With this way the screen saver provides the locking function that prevent unauthorized user from using the computer while the authorized user is leaving the computer.
Page 75
3-10 Chapter 3 SecuwayCard 2000 Manager Program Menu ! When you remove the SecuwayCard 2000 in the PCMCIA slot The screen saver is executed if you remove the SecuwayCard 2000 hardware in the PCMCIA slot while using the SecuwayCard 2000 system. In this case, reinsert the SecuwayCard 2000 hardware in the slot and input the user ID and password on the dialog box of the screen and then you can use the system again.
Page 76
3-11 Center Check <Center Check> command is used to confirm the connection status between the SecuwayCard 2000 Manager program and the SecuwayCenter. You can also use the <Center Check> command when you can’t connect with the host through security communication or see the security policy even though you did online security registration.
Page 77
3-12 Chapter 3 SecuwayCard 2000 Manager Program Menu Auto Upgrade FTP Server <Setting Auto Upgrade FTP Server> command is to set the server for sending the upgrade file automatically whenever the SecuwayCard 2000 Manager program is upgraded. If you want to use the <Setting Auto Upgrade FTP Server>, you should set the FTP server in advance.
Page 78
Value> screen, see the Part 2, Chapter 2 : Setting the Security functions of this manual. Hide If you want to hide the SecuwayCard 2000 Manger program on the screen, use the <Hide> command. Click the icon bottom left of the Windows to show the SecuwayCard 2000 Manger program on the screen again.
SecuwayCard 2000 Manger program. User View The first screen when you execute the SecuwayCard 2000 Manager program shows the SecuwayCard 2000 user information. This is the executing result of the User View icon which is on the left most of the SecuwayCard 2000 Manager program icon group.
Page 80
User This item shows the user ID who is currently logging on the SecuwayCard 2000 Manager program. Over the one user can log on the system in which the SecuwayCard 2000 is installed using their own ID. With this item, you can check the user ID who is currently logging This item is the discrimination of the SecuwaySuite 2000 users.
Page 81
All the items on the <User Info>, <Token Info>, and <System Security Information> are set by the SecuwayCenter 2000. So all the values on each items can not be changed and removed by the SecuwayCard 2000 Manager on his own authority.
Chapter 4 Features of the Icons on the SecuwayCard 2000Manager Program System Security If you click the Second icon from the leftmost on the SecuwayCard 2000 Manager program icon group, the information of the encrypted folders is displayed. For more information of the way to encrypt the folder, see the description “Chapter 2 : Setting the Security functions”...
Page 83
<View Key token> and <View SA1> are created while communicating, displayed when selecting each of them, and removed when rebooting the system or logging off the SecuwayCard 2000 Manager program. The SecuwayCard 2000 Manager program user can remove the <View Key token> and <View SA1> directly.
Page 84
The features of each item are like the following. Host Properties This item shows the available range of the IP address. Within the range of the IP address, the IP currently used by the SecuwayCard 2000 user is existed. Masterkey Information...
Page 85
SecuwayCenter 2000 and the SecuwayCard 2000. The SecuwayCenter 2000 Manager also sets this information and so the SecuwayCard 2000 Manager can’t change on his own authority. Keytoken is used commonly for the user authentication and security communication. Keytoken is created automatically after received from the SecuwayCenter 2000 when the users try to communicate.
Page 86
SecuwayCenter 2000. SA Information is displayed only when the Keytoken is received. SA information is not the item set by the SecuwayCard 2000 Manager program user separately but created automatically when connecting with the opposite side who can communicate with.
Page 87
If the communication status is normal, the Keytoken, SA1 and SA2 are created. If the “Send” and “Receive” on the <View SA> item are created like the following, the security communication is completed.
The security policy is used for doing the user authentication and packet filtering and sent by the SecuwayCenter 2000 manager to the SecuwayCard 2000 Manger program via online after setting fitted for the network environment. Security Policy? The security policy is a kind of database that saves the policy related with the way to manage the IP packet sent and received.
Page 89
SecuwayCenter 2000 also sends to the SecuwayCard 2000 necessary updates. SecuwayCard 2000 applies the security policy received from the SecuwayCenter 2000. Therefore, if SecuwayCenter 2000 administrator restricts SecuwayCard 2000 users the access to a certain server or network, you will not be able to access the prohibited resource.
Security profiles as well as security policy are managed SecuwayCenter 2000 administrator. Therefore, SecuwayCard 2000 users are not allowed to modify security profiles. But they can view profile details. If security policy governs packet transmission, security profiles become unnecessary.
Page 91
4-13 L2TP View L2TP provides a tunnel for authenticated dial-up, ADSL and cable modem users (with dynamic IP address). The tunnel allows remote users a safe access to the intranet servers. L2TP(Layer 2 Tunneling Protocol)? L2TP is a two-way tunneling protocol that encapsulates the PPP frame with a header and transmits them over Internet, X.25, Frame Relay or ATM in IP networks through UDP port 1701.
Page 92
If the SecuwayGate 2000 is restarted when SecuwayCard 2000 is running, tunneling becomes disabled. To restore tunneling, you have to create a tunnel again. In order to configure L2TP at SecuwayCard 2000, SecuwayGate 2000 must be prepared for working with L2TP.
4-15 Log View The Logs window enables you to view log records so you can inspect them and trace users’ activity. This can help you detect security breaches and locate errors, as well as estimate overall system operation. The Logs window provides such information as the logging period, user ID, user activity data and error causes.
Page 94
4-16 Chapter 4 Features of the Icons on the SecuwayCard 2000Manager Program Select the log file you want to open and [Open] button and then the log file is displayed on the <View Backup Log> screen. Log Print This icon is used to print the log file displayed on the current screen. Before printing it, check if the printer is connect to the computer you are using.
Need help?
Do you have a question about the SecuwayCard 2000 and is the answer not in the manual?
Questions and answers