Encryption and Digital Signature Settings
408
Encryption and Digital Signature Settings
13
* : For Windows, open the certificate file and check [Valid From] on the [Advanced] tab.
Encryption Features for Communication
The data sent between the machine and computers on a network can be encrypted.
Encrypting HTTP Communications from a Client to the Machine (SSL/TLS Server)
The SSL/TLS protocol is used to encrypt the HTTP communications between a client and the
machine.
z
If the certificate for the SSL server contains the V3 extension "keyUsage", "digitalSignature" must be asserted.
Refer to "How to check the certificate settings on Windows" (P.407).
z
For information on the setting procedure, refer to "Configuration of HTTP Communications Encryption" (P.410).
Encrypting HTTP Communications from the Machine to a Remote Server(SSL/TLS
Client)
The SSL/TLS protocol is used to encrypt the HTTP communications between a remote server
and the machine. No certificate is required in general. However, if a remote server is set to
require an SSL client certificate, you can use a certificate issued by another CA. When
verification of server certificates is enabled to verify the SSL/TLS certificate of a remote
server, import a certificate issued by another CA using CentreWare Internet Services to the
machine.
When verifying a SSL/TLS server certificate of a remote server with the verification of the
server certificate enabled, import the certificate of the CA included in the higher level of the
certificate path to the machine using CentreWare Internet Services.
z
If the certificate for the SSL client contains the V3 extension "keyUsage", "digitalSignature" must be asserted.
For information on how to check it on Windows, refer to "How to check the certificate settings on Windows"
(P.407).
Invalid (before validity
starts)
The valid period of
the certificate is not
started.
The validation
period of the
certificate is before
the time of the
machine.
Check the time when the
valid period of the
certificate starts. Also
check if the time of the
machine is correctly set.*
Invalid (validity expires) The certificate
expired.
The validation
period of the
certificate is after
the time of the
machine.
Check the time when the
valid period of the
certificate ends. Also
check if the time of the
machine is correctly set.*
Certificate
issuerunknown.
The certificate path is
not completed.
A CA certificate
necessary to
configure the
certificate path is
not imported.
Import all the CA
certificates of the CAs
included in the
certificate path.
Validity Status Cause Remedy