HP 100 color MFP M175a, TopShot M275 MFP HP does not recommend disabling unchecking this feature

Page 2

authenticity of the web site depends on verifying a “chain of trust” between the browser and server; the failure of the chain of trust results in the warnings.

The chain of trust between the browser and the web server is established by linking the identity certificate from the web server to a Certificate Authority (CA) certificate that is installed in the browser. Commercial and public web sites will purchase and install an identity certificate from a well-known Certificate Authority such as Thawte, Verisign, Entrust etc; the issuing CA essentially makes a statement, with the certificate, that the web site is genuine. Browsers are configured by default to trust the well-known CAs and thus can establish the validity of the identity certificates presented by the web servers.

An HP Laserjet cannot, by default, present credentials as robust as the identity certificates presented by a public or commercial web site. First it is a matter of scale: the logistics and expense of providing robust (signed by well-known CA) identity certificates for hundreds of thousands of devices is prohibitive. Secondly, it is a matter of configuration: since the identity of an HP Laserjet is determined by the user at installation, a certificate cannot be issued until after installation and configuration.

HP Laserjet printers and MFPs, nevertheless, assure the best possible security given these constraints by creating a default self-signedcertificate which assures confidentiality but does not robustly provide authenticity. (A self-signedcertificate, rather than issued by a CA, is issued by the device itself, and thus cannot establish a chain of trust to a well-known CA.)

If desired, an HP Laserjet can be configured to provide both robust confidentiality and authenticity by purchasing and installing an identity certificate from a well-known CA. The HP Laserjet will generate a Certificate Signing Request (or equivalently, Certificate Request) that is submitted, along with supporting identity documentation, to the CA which will return a signed certificate to be installed in the HP Laserjet. This process is detailed on pages 88ff. of the JetDirect Administrator’s Guide (http://h20000.www2.hp.com/bc/docs/support/SupportManual/c01502097/c01502097.pdf).

Alternatively, if security is not required, secure web communications can be disabled on the Mgmt Protocols page of the JetDirect print server by unchecking the checkbox:

HP does not recommend disabling (unchecking) this feature.

2

Image 2 Contents
Whitepaper Security warnings when browsing to JetDirect Print ServersSecurity warnings when browsing to JetDirect Print Servers HP does not recommend disabling unchecking this feature Appendix Warnings from other browsers
Related manuals
Manual 63 pages 47.78 Kb Manual 3 pages 33.75 Kb Manual 16 pages 3.82 Kb Manual 6 pages 1.74 Kb Manual 282 pages 9.49 Kb Manual 18 pages 63.99 Kb Manual 40 pages 31.81 Kb Manual 200 pages 48.59 Kb Manual 68 pages 3.02 Kb Manual 194 pages 39.72 Kb Manual 16 pages 19.16 Kb Manual 28 pages 24.43 Kb Manual 128 pages 9.14 Kb Manual 16 pages 54.25 Kb Manual 34 pages 41.95 Kb Manual 24 pages 32.45 Kb Manual 56 pages 24.57 Kb Manual 20 pages 45.48 Kb Manual 20 pages 43.53 Kb Manual 238 pages 61.75 Kb Manual 48 pages 51.88 Kb Manual 46 pages 21.19 Kb Manual 220 pages 23.57 Kb Manual 16 pages 14.41 Kb Manual 2 pages 38.79 Kb Manual 220 pages 19.6 Kb Manual 16 pages 23.18 Kb Manual 18 pages 6.09 Kb Manual 120 pages 12.45 Kb Manual 16 pages 50.2 Kb Manual 146 pages 54.04 Kb