Seagate ST500LM020 Guía de usuario Pagina 22

  • Descarga
  • Añadir a mis manuales
  • Imprimir
  • Pagina
    / 63
  • Tabla de contenidos
  • SOLUCIÓN DE PROBLEMAS
  • MARCADORES
  • Valorado. / 5. Basado en revisión del cliente
Vista de pagina 21
22
TPM as a Virtual Smart Card | Wave Systems Corp. 2012
ESC 2.9.5 Client Manual
4. When using the TPM Virtual Smart Card, you must have the appropriate trusts to your
Certificate Authorities. This trust can be created when you download a CA certificate chain from
your CA. Without the appropriate trust, you will not be able to enroll certificates.
5. Whenever enrolling a certificate, it must use the “Microsoft Base Smart Card Crypto Provider”
CSP.
6. Remote Desktop is supported with TPM Virtual Smart Card, but the target computer must have
the .MSI installed.
Example
These steps are provided only as an example of how to configure TPM Virtual Smart card logon, after
the Smartcard Logon template is made available on the CA, and TPM Virtual Smart Card has been
installed.
1. Navigate to https://<CA server IP address OR DNS entry>\certsrv .
2. Authenticate via username and password for the user you wish to enroll
3. Click Download a CA certificate, certificate chain, or CRL.
4. Click Download CA certificate chain
5. Install the resulting certificate in the Trusted Root Certificate Authority container.
6. Once the CA certificate chain is installed, click on Home in the upper right-hand corner to return
to the homepage.
7. Click Request a certificate.
8. Click Advanced certificate request.
9. Click Create and Submit a request to this CA.
10. In the certificate template dropdown box, choose the Smartcard Logon template.
NOTE: If this option does not appear, the Certificate Authority may not yet have been
configured to provide this template to this particular user.
11. In the CSP dropdown box, choose Microsoft Base Smart Card Crypto Provider.
12. Choose either 1024 or 2048 for the key size.
13. The User specified key container name checkbox is optional.
14. All other settings may remain at their default setting.
15. Click Submit.
16. At the resulting Pin window, enter any PIN (4 digits). This PIN will be required to use the
certificate later.
17. Click the Install Certificate link.
A reboot is required after taking ownership of the TPM and before enrolling
the certificate. Otherwise, the certificate snap-in will prompt for the smart
card during enrollment.
Vista de pagina 21
1 2 ... 17 18 19 20 21 22 23 24 25 26 27 ... 62 63

Comentarios a estos manuales

Sin comentarios