Xerox 701P46740 manual Secure Socket Layer, Remote Workflow

Page 28

Specified Connections. Additional subnet mask can also be specified.

Refer to online help for detailed descriptions of IP Filtering property tabs such as: General tab, System tab, INIT tab, INETD tab, RPC tab.

Remote Workflow

Remote Workflow allows for a remote connection to the Xerox

FreeFlow Print Server controller.

The administrator can limit access through the Xerox FreeFlow Print Server interface [Setup > System Preferences menu option]. Remote Workflow options include: Enable All Connections, Disable All Connections, Enable Specified Connections (by specific IP Address).

NOTE: The default is Enable All Connections.

Secure Socket Layer

The Xerox FreeFlow Print Server implements Secure Socket Layer technology using encryption, a secure port, and a signed digital certificate.

Secure Socket Layer (SSL) and Transport Layer Security (TLS) are two network security protocols that encrypt and transmit data via HTTP and IPP over the TCP/IP network. SSL is a protocol layer placed between a reliable connection-oriented network layer protocol and the application protocol layer.

The network client and the web server (printing system) decide which protocol to use for data transfer and communication.

The encryption level can be either secure or normal. Normal security in the SSL/TLS tab means that the user can access IPP or HTTP via http or https.

Using the Print Server SSL/TLS Security Feature

The Secure Socket Layer (SSL) and Transport Layer Security (TLS) are two protocols used to provide a reliable end-to-end secure and authenticated connection between two points over a network. The Xerox FreeFlow Print Server SSL/TLS feature allows a System Administrator to do the following:

1.Create and use a self-signed SSL/TLS certificate

24

Security Guide

Image 28
Contents Security Guide USA Table of contents Table of contents About this guide ContentsConventions Customer support Security System supplied security profilesCD-ROM FTPEnable and disable services BSMS72AUTOINSTALL S40LLC2S47ASPPP S70UUCPS15NFS.SERVER S17HCLNFS.DAEMONS76SNMPDX S77DMISecurity Guide Security Guide User level changes Disabling secure name service databases Multicast routing disabledSolaris file permissions OS and host information hiddenExecutable stacks disabled Remote CDE login disabledXerox FreeFlow Print Server router capabilities disabled Sendmail daemon securedRemote shell internet service Enable-ftp and disable-ftpSecurity warning banners Disabling LP anonymous printingSetting the current and default profiles Account managementCreating user-defined profiles Local users and groupsDefault user groups and user accounts Group authorization Creating user accountsMED CD-ROM CDSAuto-Logon Default Screen/Auto-Logoff Password securityStrong Passwords How to Enable/Disable Strong Password Audit Logs GUI LoggingAccessing the Xerox FreeFlow Print Server through ADS Date/Time User Login/LogoutChanging individual passwords User Activity on the SystemLimiting access IP FilteringSecure Socket Layer Using the Print Server SSL/TLS Security FeatureRemote Workflow Creating and Using a Self-Signed Certificate IsgwSecurity Guide Network Protocol Digital CertificatesHttp IPPSnmp WinsMicr mode Secure PrintSSL NFSPrevent Unauthorized Queue Changes Roles and responsibilitiesQueue Lock Xerox responsibilitiesSecurity tips Customer ResponsibilitiesVirus Scan Online Help for security