Black Box ET1000A, ET0010A, EncrypTight, ET0100A manual Handling Common Name Lookup Failures

Models: EncrypTight ET0100A ET0010A ET1000A

1 352
Download 352 pages 21.02 Kb
Page 296
Image 296

Using a Common Access Card

NOTE

When Common Access Card Authentication is enabled, users of the EncrypTight software can log in without using passwords if the deployment includes only ETEPs running software version 1.6 or later. However, passwords are still required when administrative users log into the ETEPs using the serial port and through SSH.

Handling Common Name Lookup Failures

When Common Access Card Authentication is enabled, the user accounts for all users who attempt to log into EncrypTight must be configured with common names that match the identity certificate used on their CAC. If the common names do not match or if the user account does not include a common name, by default EncrypTight prompts for a valid user name and password.

If this failsafe mechanism is deactivated, you can be locked out of the system and unable to make changes or troubleshoot the system. However, to provide even greater security you can disable this backup user ID and password prompt.

To specify how to handle common name failures:

1In EncrypTight, choose Edit > Preferences.

2Expand the ETEMS item and click Login.

3Click On CAC CN Failure, enable User ID/Password authentication to enable or disable the option.

4Click Apply and click OK.

EncrypTight User Guide

297

Page 296
Image 296
Black Box ET1000A, ET0010A, EncrypTight Handling Common Name Lookup Failures, To specify how to handle common name failures