Encryption and Digital Signature Overview
371
E
n
cr
y
pt
io
n
an
d
Di
gi
ta
l S
ign
at
ure
S
e
tt
in
gs
13
Note
•
By encrypting HTTP communications, communications data can be encrypted at the time of
printing using IPP (SSL encrypted communications).
Encrypting HTTP Communications from the Machine to a Remote Server
(SSL/TLS Client)
The SSL/TLS protocol is used to encrypt the HTTP communications between a remote server
and the machine.
No certificate is required in general. However; if a remote server is set to require an SSL client
certificate, you can use a certificate issued by another CA.
When verification of server certificates is enabled to verify the SSL/TLS certificate of a
remote server, import a certificate issued by another CA using CentreWare Internet Services
to the machine.
Encryption using IPsec
IPsec enables IP-level (not application-level) encrypted communications with remote
devices.
If you select [Authenticate by Digital Signature] for [IKE Authentication Method], a
certificate issued by another CA is required.
If you select [Authenticate by Preshared Key], no device certificate is required.
Note
•
If the certificate for IPsec contains the V3 extension (keyUsage), "digitalSignature" bit must be
asserted.
For information on IKE authentication methods, refer to "IPsec Settings" (P.201).
To verify the certificate of the remote device, you must register a root certificate created by
a CA of the remote device on the machine.
Note
•
To use certificates that have already been created, import them with CentreWare Internet Services.
E-mail Encryption/Digital Signature
S/MIME is used for E-mail Encryption/Digital Signature. To use S/MIME on the machine, S/
MIME certificates are used.
For an S/MIME certificate, you can use a certificate issued by another CA.
The personal certificates or the device certificates of destinations are required for encrypted
communications.
Note
•
If the certificate for S/MIME contains an "email Address" or a V3 extension (keyUsage),
"digitalSignature" and "keyEncipherment" must be asserted. If the certificate contains v3 extension
(extendedKeyUsage), "emailProtection" must be set.
Encryption and Digital-Signature Features for Scan Files
Encrypting PDF/DocuWorks Documents
PDF and DocuWorks documents can be encrypted and protected by a password.
For information on how to encrypt PDF and DocuWorks documents, refer to "5 Scan" > "E-mail" > "File Format (Selecting a
File Format for Output Data)" in the User Guide.
Encryption/Digital Signature of PDF/DocuWorks/XPS Documents (ApeosPort Series
Models Only)
Digital signatures are available for PDF, DocuWorks, and XPS documents.
To use the digital signature, a device certificate is required.
For a device certificate, you can use any registered certificates.
Note
•
XPS stands for XML Paper Specification.
Summary of Contents for ApeosPort-V 4070
Page 1: ...ApeosPort V 5070 ApeosPort V 4070 DocuCentre V 5070 DocuCentre V 4070 Administrator Guide ...
Page 13: ...13 EP System 704 Glossary 705 Index 707 ...
Page 14: ...14 ...
Page 40: ...1 Before Using the Machine 40 Before Using the Machine 1 ...
Page 108: ...4 Machine Status 108 Machine Status 4 ...
Page 316: ...7 Printer Environment Settings 316 Printer Environment Settings 7 ...
Page 348: ...9 Scanner Environment Settings 348 Scanner Environment Settings 9 ...
Page 356: ...10 Using IP Fax SIP 356 Using IP Fax SIP 10 ...
Page 368: ...12 Using the Server Fax Service 368 Using the Server Fax Service 12 ...
Page 384: ...13 Encryption and Digital Signature Settings 384 Encryption and Digital Signature Settings 13 ...
Page 582: ...15 Problem Solving 582 Problem Solving 15 ...
Page 718: ...716 Index ...