Setup and configuration profile: TLS tab
On this tab, configure if you want the Intel AMT devices to require a certificate
when authenticating with other applications.
Note: You must have a properly configured infrastructure (certification authority
installed, proper certificates installed) to configure Intel AMT computers with
TLS or TLS Mutual Authentication.
See
"About TLS"
on page 95.
Options on the TLS tab
Table 10-8
Option
Description
Use TLS
Check to enable TLS.
When TLS is enabled, the Intel AMT device requires a server
certificate that is used to authenticate itself with other applications.
See
Local Interface
Select if you want the host communications with the Intel AMT device
to require TLS or TLS with mutual authentication.
Network Interface
Select if you want network communications with the Intel AMT
device to use TLS or TLS with mutual authentication.
Encryption Mode
Click Encrypted to allow setup and configuration only on the
platforms that support encryption.
Click Plain Text to allow setup and configuration only on the
platforms that do not support encryption.
Click Both to allow setup and configuration on both types of
platforms (encrypted and plain text).
Server Certificate
Select the certification authority (CA) that you want to use to generate
server certificates for the Intel AMT devices that are associated with
the profile.
See
Note:
a single profile. These include the Server certificate that is required
for TLS and any client certificates that are required for 802.1x profiles
or for NAC posture signing. In a normal installation, a single client
certificate would be purchased for all applications in the facility. If
a profile requires more than three certificates, setup of an Intel AMT
device that is based on this profile fails.
About Out of Band Management Component pages
"About TLS"
on page 95.
"Add Certificate Generation Properties dialog box"
Only three server and client certificates can be associated with
Configuration Profiles page
on page 126.
135
Need help?
Do you have a question about the ALTIRIS OUT OF BAND MANAGEMENT COMPONENT 7.0 SP3 - IMPLEMENTATION GUIDE V1.0 and is the answer not in the manual?