Setup the Encrypted Communication Path

There are four steps to complete to set up the encrypted communication path with the device certificate:

  1. Build the combination of applications and certificate entry on each device.

  2. Create CSR.

  3. Create the certificate, submit it to the certificate authority, and take out the certificate.

  4. Install the certificate.

The Certificate Management Tool can carry out a series of processing from step two to step four (mentioned above) as a job lot by performing in cooperation with the SCEP server. This tool can also perform step one as a single task. In addition, because this tool has the same parameters as those of the device, you can configure them in the same manner as the device configuration.

Order

Steps

Notes

1

Set the Configuration Options

Configure the connection settings to connect to the Core Server.

2

Download the Device List

Obtain the device list from the Core Server.

3

Confirm a Certificate

The configuration status of the MFP Certificate can be confirmed in the Certificate Management Tool.

4

Manage Certificates

You can perform the following operations when managing certificates:

  • Obtaining the certificate settings status on a device

  • Creating a self-signed certificate on a device

  • Creating and obtaining a Certificate Signing Request (CSR)

  • Installing and deleting a certificate or intermediate certificate on a device

To install a certificate, associate the certificate with CSR and import an intermediate certificate in the Certificate Management Tool in advance.

5

Assign an Application

Assign the certificate to the related application of the selected device.

Please refer to the following chapters in the device’s manual or security guide for the specific details of each procedure as relates to your device.

  • Protecting the Communication Path via a Device Certificate

  • Creating the Device Certificate (Issued by a Certificate Authority)

  • Installing the Device Certificate (Issued by a Certificate Authority)

In addition, please refer to the Web Image Monitor (WIM) Help for details regarding how to set items on the device. Login to WIM and go to [Configuration] → [Security Device Certificate], then set the necessary device certificate.