HP 640n Print Server Supplied manuals, IPsec/Firewall, Wireless print server authentication

Page 14

To configure the print server for EAP/802.1X authentication, use the HP Embedded Web Server through your Web browser. For more information, see HP Embedded Web Server (V.45.xx.nn.xx) on page 63.

Wireless print server authentication

HP Jetdirect wired/wireless print servers support several wireless authentication methods, which include the following:

WEP–PersonalAuthentication is based on a secret, common wired equivalent privacy (WEP) key that must be configured on each wireless device. A device that does not have the proper WEP key cannot use the network. Static WEP encryption protocols are used for network communications.

WEP–EnterpriseRequires 802.1X credentials to use the wireless network. A dedicated server verifies the identity of the user or device that is requesting network use. There are several available protocols.

WPA/WPA2–PersonalUses wi-fi protected access (WPA) standards through a pre-shared key. A user-specified passphrase must be entered to generate the pre-shared key. Dynamic WPA encryption protocols are used for network communications to provide enhanced security.

WPA/WPA2–EnterpriseRequires 802.1X credentials to use the wireless network. A dedicated server verifies the identity of the user or device that is requesting network use. There are several available protocols.

IPsec/Firewall

IPsec/Firewall features provide network-layer security on both IPv4 and IPv6 networks. A firewall provides simple control of IP traffic, which is either permitted access or discarded. IPsec, RFC 2401 provides additional protection through authentication and encryption protocols.

The IPsec/Firewall capabilities depend on the HP Jetdirect print server product and the printer/MFP in which it is installed. The following capabilities are available:

Value-featured print servers do not support IPsec/Firewall operation.

Full-featured print servers and printers/MFPs that support IPsec can control IP traffic by using both firewall and IPsec protection.

Full-featured print servers and printers/MFPs that do not support IPsec can control IP traffic using firewall protection only.

To configure the print server for IPsec/Firewall operation, use the HP Embedded Web Server through your browser. For more information, see IPsec/Firewall configuration (V.45.xx.nn.xx) on page 105.

Supplied manuals

For information about your HP Jetdirect print server, see the following manuals:

Start or use guides, or equivalent printer documentation (shipped with printers that have factory- installed HP Jetdirect print servers).

This manual, the HP Jetdirect Print Server Administrator's Guide for the applicable HP Jetdirect product models.

4 Chapter 1 Introducing the HP Jetdirect print server

ENWW

Image 14
Contents HP Jetdirect Print Servers Page HP Jetdirect Print Servers Trademark Credits Table of contents Mac OS network installation IPX/SPX 125 105121 139 165193 175179 211Introducing the HP Jetdirect print server Supported print serversSupported network protocols 2Supported network protocolsSecurity protocols AuthenticationEAP/802.1X port-based authentication Snmp IP and IPXIPsec/Firewall Wireless print server authenticationSupplied manuals HP support Firmware upgradesFirmware installation tools HP online supportProduct accessibility Product registrationOperating Environment Function Remarks 1Software SolutionsHP Web Jetadmin see HP Web Jetadmin on HP software solutions summary System requirements HP Jetdirect Printer Installer for UnixHP Web Jetadmin Remove HP Web Jetadmin software Install HP Web Jetadmin softwareConfigure and modify a device Verify HP Web Jetadmin installation and provide accessMicrosoft-supplied software Http// IPaddress /ipp/port#Software tools Mac OS network installationNovell-supplied software Use Bonjour Mac OS XVerify network configuration Test the configurationEnww IPv6 configuration IPv6 address introductionIPv6 address configuration Link-local addressUse DNS Stateless addressesStateful addresses Tools and utilities IPv4 configurationServer-based and manual TCP/IP configuration IPv4 Default IP address is assigned Default IP address IPv4Default IP address is not assigned Default IPv4 parameter Default IP on wireless and wired print serversDefault IPv4 address configuration options Dhcp requests enable/disableDefault IPv4 behavior TCP/IP configuration toolsConfigure the print server using BOOTP/TFTP on Unix Use BOOTP/TFTP IPv4Advantages of using BOOTP/TFTP Bootptab file entries IPv4 Systems using network information service NISConfigure the Bootp server 1Tags supported in a BOOTP/DHCP boot file RFC DescriptionTftp configuration file entries IPv4 General 2TFTP configuration file parametersExample HP Jetdirect Tftp configuration file TCP/IP Main TCP/IP Print Options Lpd-printing or lpd-config,lpd Ftp-printing or ftp-config,ftpIpp-printing or ipp-config,ipp DefaultqTCP/IP Raw Print Ports TCP/IP Access ControlTCP/IP Other Settings Slp-client-mode Bonjour-configSlp-keep-alive Syslog-protocolCold-reset Idle-timeoutUser-timeout or telnet-timeout Icmp-ts-configSnmp-config Default-ipDefault-ip-dhcp Auth-trap or authentication-trapTrap-dest ip-address community name port number Ipx-config or ipx/spxTrap-dest or trap-destination Ipx-unit-nameOther Settings AppleTalkSupport Use Dhcp IPv4Unix systems Microsoft Windows systems Discontinue Dhcp configurationUse Rarp IPv4 Use the arp and ping commands IPv4 Laserjet1Use Telnet IPv4 Arp -s IP address LAN hardware address Ping IP addressCreate a Telnet connection Typical Telnet sessionTelnet command line interface default Telnet user interface options3Telnet Commands and Parameters Command Description User Control CommandsWireless 802.11 Main Network-type Passphrase commandAmpdu Aggregation Desired-ssidEncryption Dot11-switch-timePsk-passphrase Wep-key-method00a0f8387af7 Wireless DiagnosticsRoam-threshold Host-nameTftp Filename Ipsec-config Firewall-configTftp Server Hpnp/printer1.cfgPri-dns-svr Domain-name support.hp.comPrinter1.support.hp.com Pri-wins-svrTCP/IP LPD Queues Syslog-svr AllowTCP/IP Other To 1440 Enable Bonjour Domain NameUser-timeout Ftp-downloadTcp-mss Ews-configGw-disable TCP/IP Diagnostics Snmp Traps Pjl-banner PhaseIpx-mode Ipx-bannerOther Network-select 1000t-ms-conf1000t-pause-conf Menu Interface Web JetAdmin URLWeb JetAdmin Name Support-contact1Example Using the Menu Interface Use Telnet to remove an IP addressMove to another network IPv4 Use the HP Embedded Web ServerUse the printer control panel Enww HP Embedded Web Server V .xx.nn.xx View the HP Embedded Web Server Supported HP Web Jetadmin versionRequirements Compatible Web browsersView the HP Embedded Web Server 1HP Jetdirect Home Page Items HP Jetdirect Home tabOperating notes Networking tab Device tabsDiagnostics section Wireless StationConfiguration section 2Networking Menu Items3Wireless Station configuration parameters Ad Hoc Network peer-to-peer Network Name SsidRefresh ChannelWEP Enterprise HpSecureNetwork WPA WiFi Protected AccessWPA-Personal Restore Defaults WPA-Enterprise4TCP/IP Summary tab TCP/IP SettingsSummary tab Network Identification tab 5TCP/IP Network Identification tabTCP/IPv4 tab 6TCP/IPv4 tabTCP/IPv6 tab 7TCP/IPv6 tabConfig Precedence tab 8TCP/IP Config Precedence tabAdvanced tab 9TCP/IP Advanced tabDefault IP Proxy Server PasswordDisable Manually ConfiguredNetwork Settings 10IPX/SPX tab settingsAppleTalk AppleTalk Name 11AppleTalk tab settingsAppleTalk Enable Type12SNMP tab settings 13Miscellaneous Settings Other SettingsMisc. Settings Link settings Certificate Mgmt ServiceWeb Services Print Locally Administered AddressLPD Queues Firmware UpgradeService Bonjour Highest PriorityPrepend String Name 14LPD Queues tab settingsQueue Name Append String NameRaw or text Default Queue NameQueue Type String NameSecurity Settings Select Language15Wizard Security Levels Security Level Description Basic SecurityRecommended Restore DefaultsSecurity Level Description Enhanced Security Custom SecurityPrinter Password Synchronization AuthorizationAdmin. Account CertificatesConfigure certificates 16Certificate configuration screensEncryption Key Length Install CertificateCertificate Validity Period Certificate InformationDomain Name myprinter.mydepartment.mycompany.com Install Certificate or Install CA Certificate screensExamples Access Control ExamplesSnmp Mgmt. ProtocolsWeb Mgmt Other Enable Print ProtocolsEnable Print Services 17Other protocolsMight be disabled without notification 802.1X AuthenticationEnable Device Discovery Naming Resolution18802.1X configuration settings Device Announcement Agent Other Links Enww IPsec/Firewall configuration V .xx.nn.xx 1Firewall Policy 1IPsec/Firewall Policy IPsec security associations SA Default Rule exampleAll IPv4 Addresses All Jetdirect Print Services HP Jetdirect IPsec/Firewall wizardLimit Limitations to rules, templates and services2Limitations to rules, templates and services Specify Address Template Create Address Template4Create Service Template Specify Service TemplateCreate Service Template 3Create Address Template5Manage Services Manage ServicesManage Custom Services 6Manage Custom ServicesSpecify Action Specify IPsec/Firewall Template7Create IPsec Template Identity AuthenticationCreate IPsec Template Certificates 8Identity AuthenticationKerberos Certificates on9Kerberos Kerberos Settings10Kerberos Settings 11IKEv1/IKEv2 Phase 1 Authentication IKEv1/IKEv2 Phase 1 AuthenticationIKEv1/IKEv2 Phase 2 / Quick Mode IPsec Protocols 13Advanced IKE Settings Advanced IKE Settings12IKEv1/IKEv2 Phase 2 / Quick Mode Settings IPsec Protocols IPsec Protocols Manual Keys15Manual Keys Manual Keys14IPsec Protocols Manual Keys Value for an SA to use for packets received by the deviceRule Summary Configure Microsoft Windows systemsAuthentication Key FormatSecure Embedded Web Server Management 1Summary of HP Jetdirect security featuresIP Administrator Password IPsec/FirewallTelnet Control IPv4 Access Control ListAuthentication and Encryption IPv4/IPv6 Snmp v1/v2c Set Community Name IP/IPXPrinter Control Panel Lock HP Web Jetadmin IPv4 Password and ProfilesConfiguration Precedence Table Medium Limit access to security features2Settings for Access Control HighTroubleshoot the HP Jetdirect print server Reset to factory defaults Example Cold reset using the service menuReset to factory defaults Disable an HP Jetdirect embedded print server V .xx.nn.xx General troubleshooting Troubleshooting chart assess the problemProcedure 1 Verify the printer is on and online Procedure 2 Print an HP Jetdirect configurationProcedure 3 Resolve printer display error messages Procedure 4 Resolve printer network communication problems Telnet IP address port Enww Unable to communicate after initial setup Troubleshooting wireless print serversUnable to communicate during initial setup My configured channel does not match the configuration Firmware download failure SymptomsImproving reception and performance Corrective actionsEnww HP Jetdirect configuration pages Configuration page format HP Jetdirect configurationStatus field error messages 1Configuration Page Sections2HP Jetdirect Configuration/General Information Configuration page messagesHP Jetdirect Configuration/General Information MessageDescriptionWireless station settings Message Description3802.11 Wireless station settings Security Settings Firewall Admin PasswordIPsec Cert ExpiresUnicast Packets Received Network StatisticsTotal Packets Received BAD Packets ReceivedIPv4 section TCP/IP configuration informationTCP/IP protocol information IP Address Default GatewayConfig by Subnet MaskIPv6 section IPv4 SectionIPv6 Section IPX/SPX configuration informationIPX/SPX protocol information CN=ljpserver.OU=support.OU=mycity.OU=mycompany Novell/NetWare parametersAppleTalk protocol information 12 DLC/LLC configuration information Error messages11 AppleTalk configuration information DLC/LLC protocol information13Error messages Error Code and Message DescriptionNetwork Reconfig Must LAN Error Retry FaultsLAN Error no Linkbeat Reboot DisconnectedDisconnecting SPX Unable to LoginUnable to SET Password TimeoutError 2B NDS ERR Unable to Login2C NDS Authentication Error NDS PS Printer List Error4F Tftp Remote Error Novram Error4D CF ERR Access List Tftp Local ErrorBOOTP/RARP in Progress BAD BOOTP/DHCP ReplyBAD Bootp TAG Size BOOTP/DHCP in ProgressHP Jetdirect Security Dhcp Lease TimersAdjusted Trying to Connect to2HP Jetdirect Security 14General InformationCurrent IPsec status IPsec Statistics IPsec Error LogLocal IP addresses 16IPsec statistics IKE StatsIPsec Rules 17IKE Statistics18IPsec Security Associations Available Network ServicesIPsec Security Associations SA table SRCLPD printing Table A-1LPD programs and protocols Requirements for configuring LPDAbout LPD Purpose of ProgramSet up print queues LPD setup overviewSet up IP parameters Print a test fileConfigure print queues for BSD-based systems LPD on Unix systemsUse SAM to configure print queues HP-UX systems Example jetdirect1LPD on Microsoft Windows Server 2003/2008 systems Print a test fileInstall TCP/IP software Verify the configuration Add LPR compatible printer windowPrint from Microsoft Windows clients Configure a network LPD printerLPD on Microsoft Windows XP systems Add Microsoft Windows optional networking componentsCreate an LPR port for an installed printer Click Start, Printers and FaxesFTP connections Print filesUse FTP printing Control connectionFTP login Data connectionCommand Description CommandsTable B-1User commands for HP Jetdirect FTP server End the FTP sessionExample FTP Session PORT1HP Jetdirect control panel menus V .xx.nn.xx Menu item Sub-menu item Values and Description Graphical control panel menusTable C-1HP Jetdirect EIO Menu on Graphical Control Panel SsidEnable Configure Keys Transmit KeyReset IPv4 Settings Config MethodIPv6 Settings Enable Manual SettingsDefault IP Dhcp RenewProxy Port DHCPv6 PolicyProxy Server Frame TypeSecurity Print Sec AppleTalk EnableReset Security IPsec or FirewallLAN HW Test Enable WipeCode Verification Http TestData Path Test TimeoutSnmp Test Select All TestsPackets Received Ping ResultsPackets Sent Percent LostLink Speed Print ProtocolsMenu Item Description Classic control panel EIO menusTable C-2HP Jetdirect EIO Menu on Classic Control Panel CFG NetworkWEB Menu ItemCFG IPX/SPX Firewall SecurityIpsec Code VerificationEnww Open source licensing statements GSOAPExpat XML Parser CURL Copyright and Permission NoticeGNU General Public License GNU General Public LicenseGNU General Public License Enww No Warranty END of Terms and Conditions GNU Lesser General Public License GNU Lesser General Public LicenseEnww Enww Enww Enww Enww GNU Lesser General Public License Original SSLeay license OpenSSLOpenSSL license OpenSSL Appendix D Open source licensing statements Index See also Gateway NDS Novram Error Total Packets Rcvd Enww Page  Hewlett-Packard Development Company, L.P
Related manuals
Manual 56 pages 58.74 Kb