
An intermediate CA is a subordinate of a root CA. An intermediate CA is capable of signing and issuing identity
certicates. The result is a certicate chain that begins at the root CA and ends with identity certicates.
Intermediate CAs provide an added level of security that reduces the risk of the root CA being compromised.
Federal Information Processing Standard (FIPS) supports only CA certicates that are signed by using the SHA-1
authentication protocol or later. To upload CA certicates when FIPS mode is enabled on the device, the CA
certicates must be signed by using SHA-1 or later. If you upload a CA certicate that is signed by using the MD5
authentication protocol or earlier (MD2 or MD4) or is in the PFX format with the RC4 Message Authentication
Code (MAC) verication, the conguration fails.
Use the following steps to congure this option:
1. Click the Browse button, navigate to and select the CA certicate, and then click the Open button.
2. For a root CA certicate, clear the Allow Intermediate CA certicate checkbox.
-or-
For an intermediate CA certicate, select the Allow Intermediate CA certicate checkbox.
CAUTION: If an intermediate CA certicate is installed, the scope of authentication is limited.
Upload Jetdirect Certicate
Use this option to upload a valid HP Jetdirect certicate to the authentication server and copy the certicate to
the device. Some organizations require secure authentication for their devices. You can upload the HP Jetdirect
certicate remotely to meet the security needs of your organization.
Federal Information Processing Standard (FIPS) supports only HP Jetdirect certicates that are signed by using
the SHA-1 authentication protocol or later. To upload HP Jetdirect certicates when FIPS mode is enabled on the
device, the HP Jetdirect certicates must be signed by using SHA-1 or later. If you upload an HP Jetdirect
certicate that is signed by using the MD5 authentication protocol or earlier (MD2 or MD4) or is in the PFX format
with the RC4 Message Authentication Code (MAC) verication, the conguration fails.
Use the following steps to congure this option:
1. Click the Browse button.
2. On the Open window, navigate to and select the certicate le, and then click the Open button.
3. In the Password box, enter the password for the HP Jetdirect certicate.
Web Services Print
Use this option to enable or disable the Microsoft Web Services for Devices (WSD) Print services supported on
the HP Jetdirect print server.
Enable or disable this option and then click Apply.
WINS Server
Use this feature to specify the IP address of a primary Windows Internet Naming Service (WINS) server for this
device. A secondary WINS server may also be specied, if supported by the device, for use when the primary
WINS server is not available. Devices on IP networks actually use IP addresses for communications. A WINS
server provides name resolution services, that is, it translates between user-friendly host names and IP
412 Chapter 6 Device Conguration Options ENWW
Comentarios a estos manuales