124
IGEL
Technology GmbH
IGEL Zero HDX
5.09.100
More information can be found at Microsoft, e.g. in the white paper
http://download.microsoft.com/download/a/d/f/adf2dba9-92db-4765-bf2d-34b1c8df9ca3/Microsoft%
20SCEP%20implementation%20whitepaper.doc
(
http://download.microsoft.com/download/a/d/f/adf2dba9-92db-4765-bf2d-34b1c8df9ca3/microsoft
scep implementation whitepaper.doc
)
Enable certificate management via SCEP client (NDES) and then make the necessary configuration
settings.
8.5.1.
Certificate
Menu path:
Setup > Network > SCEP Client (NDES) > Certificate
Under
Certificate
, specify the basic date for the certificate to be issued by the certification authority.
Type of CommonName
If the client automatically obtains its network name,
DNS Name (auto)
is a good
type of thin client certificate.
Organizational unit
Stipulated by the certification authority.
Organization
A freely definable designation for the organization to which the client belongs.
City, state, country
Enter the location of the client here.
RSA key length
Select a key length (one able to be used by the certification authority) for the
certificate that is to be issued.
8.5.2.
Certification Authority
Menu path:
Setup > Network > SCEP Client (NDES) > Certification Authority
Enter the name of the certification authority (CA) and the hash value of the root certificate.
You will receive both of these from the certification authority.
8.5.3.
SCEP
Menu path:
Setup > Network > SCEP Client (NDES) > SCEP
In addition to a certification authority, an SCEP server must also be defined.
Enter the
address
and
query password
for the SCEP server here.
The SCEP server generates the password as a one-time password. It is needed when a certificate is
requested for the first time. New certificates will be requested before the old ones expire. In this
case, the still-valid certificate will serve as a means of authentication.
For the purpose of checking validity, define an
interval
(checking frequency) and a
period of time
in
which certificate renewal must occur.