HP ActivCard Smart Card Instrukcja Użytkownika

Przeglądaj online lub pobierz Instrukcja Użytkownika dla Networking HP ActivCard Smart Card. HP ActivCard Smart Card User's Manual Instrukcja obsługi

  • Pobierz
  • Dodaj do moich podręczników
  • Drukuj
  • Strona
    / 24
  • Spis treści
  • BOOKMARKI
  • Oceniono. / 5. Na podstawie oceny klientów
Przeglądanie stron 0
1
Implementation of an ActivCard® smart card solution on HP CCI
Introduction . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .2
Prerequisites . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .2
Reference hardware and software . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 2
Configuration compatibility . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 3
Software configuration . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 4
Step 1: Configuring a Certificate Authentication (CA) service . . . . . . . . . . . . . . . . . . . . . . .4
Step 2: Group policy setting . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 9
Step 3: HP blade PC middleware configuration . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 10
Step 4: Client smart card driver configuration . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .10
Smart card setup . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .11
Initialization of the smart card using Microsoft Remote Desktop Connection . . . . . . . . . . . .11
Initialization of the smart card using HP Session Allocation Manager Client (HPSAM Client) .14
Requesting a certificate from the blade PC . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .16
Usage cases . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .19
Usage case 1: User authentication from client device to blade PC using RDP . . . . . . . . . . . 19
Usage case 2: User authentication from client device to blade PC using HPSAM client . . . .19
Usage case 3: Accessing secure Web site . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .20
Usage case 4: User authentication using VPN through firewall to blade PC . . . . . . . . . . . .21
Additional information . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 24
Przeglądanie stron 0
1 2 3 4 5 6 ... 23 24

Podsumowanie treści

Strona 1

1Implementation of an ActivCard® smart card solution on HP CCIIntroduction . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Strona 2 - Prerequisites

10Step 3: HP blade PC middleware configurationThe following provides HP blade PC software configuration:• For the purposes of this white paper, an HP

Strona 3 - Configuration compatibility

11• USB CAC approved smart card reader (SCM Microsystems SCR331 Reader)Driver: SCR33X2K.sys, version 4.27.00.01NOTE: For Microsoft Windows CE.NET, you

Strona 4 - Software configuration

12d) In the right pane, expand Smart card readers.e) Select the installed smart card reader.f) Under Device status, verify the message “This device i

Strona 5 - Smartcard Logon

135. In the Local Devices area, select Smart cards.6. Connect to the blade PC on which you will set up the smart card and log in as a domain-authenti-

Strona 6 - 9. Click the Security tab

14Initialization of the smart card using HP Session Allocation Manager Client (HPSAM Client)1. Power on the thin client with the smart card reader ins

Strona 7

156. Connect to the blade PC on which you will set up the smart card, and then log in as a domain-authenticated user.7. Verify the ActivCard icon is d

Strona 8

16Requesting a certificate from the blade PC1. Open Internet Explorer and go to the Certification Server enrollment Web site. The address of this Web

Strona 9 - Step 2: Group policy setting

176. If a warning message displays about a potential scripting violation, press Yes to continue with the certificate request.7. After the system gener

Strona 10

18To verify that the CCI SmartCard Logon certificate for the user is installed on the smart card:1. Click the ActivCard icon in the system tray to ope

Strona 11 - Smart card setup

19Usage casesUsage case 1: User authentication from client device to blade PC using RDPThe following steps provides instructions for performing a func

Strona 12

2This white paper discusses the implementation of ActivCard® smart cards on HP Consolidated Client Infrastructure (CCI). This white paper is not inten

Strona 13

202. Open the HPSAM client window and initiate a connection to the blade PC.3. Make sure a smart card is installed in the reader. The system requests

Strona 14 - (HPSAM Client)

214. In Internet Explorer, type the address of a secure Web site. 5. If the system displays security alert messages, click OK.The LED on the card read

Strona 15

224. In the Company Name box, type the name for the VPN connection (for example, Work), and then click Next.5. Select Do not dial the initial connecti

Strona 16

232. Right-click on the VPN connection icon and select Properties.You can initiate the VPN connection after setting it up, as follows:1. Start the VPN

Strona 17

24After the connection is established, the network connection icon displays in the system tray.Additional informationFor more information about HP Con

Strona 18

3• Blade Enclosure.• HP e-class blade enclosure.• Blade PCs• HP bc1000 blade PC running Microsoft Windows XP SP2 w/HPSAM blade service installed.• HP

Strona 19 - Usage cases

4Software configurationConfigure the following items to set up a smart card solution on CCI:1. Certificate Authentication (CA) service2. Group policy

Strona 20

54. Type a name for the new template in the Template display name box. This example uses CCI Smartcard Logon.

Strona 21

65. Click the Request Handling tab.6. Select or type 1024 in the Minimum key size box.7. Click the CSPs button.8. Select Requests can use any CSP avai

Strona 22

710. In the Permissions for Authenticated Users box, in the Allow column, select Read and Enroll.You have completed creation of the template.11. Copy

Strona 23

8d) Select New > Certificate Template to Issue.12. Select the template, and then click OK to import the template.

Strona 24 - Additional information

9Step 2: Group policy settingApply the following smart card group policy settings to the computer through a user policy setting or through a computer

Komentarze do niniejszej Instrukcji

Brak uwag