Security server configuration

Similar documents
Configuring User Identification via Active Directory

Instructions Microsoft Outlook Express Page 1

Configuring Global Protect SSL VPN with a user-defined port

Document No. FO1001 Issue Date: Draft: Work Group: FibreOP Technical Team October 1, 2013 Final:

How to Configure Active Directory based User Authentication

Stoneware Inc. Hyland Software OnBase. Stoneware, Inc.

Setting Up Sharp MX-Color Imagers To Scan To

Customer Tips. Configuration and Use of the MeterAssistant Option. for the user. Purpose. Xerox Device Configuration. Xerox Multifunction Devices

Setting Up Scan to SMB on TaskALFA series MFP s.

Instructions for Microsoft Outlook 2003

How to configure your Thomson SpeedTouch 780WL for ADSL2+

Setup Guide. network support pc repairs web design graphic design Internet services spam filtering hosting sales programming

How To - Configure Virtual Host using FQDN How To Configure Virtual Host using FQDN

Set Up Setup with Microsoft Outlook 2007 using POP3

Configuring PPP And SIP

AXIS Camera Companion Internet access

To configure Outlook Express for your InfoMetrics address:

Using Remote Desktop with No-IP

(1) Network Camera

Biznet GIO Cloud Connecting VM via Windows Remote Desktop

CONFIGURING TALKSWITCH FOR RUBICON SERVICE

Outlook 2010 Setup Guide (POP3)

Configuring Outlook to send mail via your Exchange mailbox using an alternative address

VPN Consortium Scenario 1: Gateway-to-Gateway with Preshared Secrets

MailEnable Installation Guide

Configure ActiveSync with a single Exchange server (Exchange sync for an iphone)

Enterprise Security Interests Require SSL with telnet server from outside the LAN

Setting up Sharp MX-Color Imagers for Inbound Fax Routing to or Network Folder

How To Configure SSL VPN in Cyberoam

Using Virtual Machines

How to configure your client

Unisys Internet Remote Support

Outlook Express. Make Changes in Red: Open up Outlook Express. From the Menu Bar. Tools to Accounts - Click on Mail Tab.

INUVIKA OVD VIRTUAL DESKTOP ENTERPRISE

Enable Connectivity for 3PAR Storage:

Reason 8 Multi Licenses

CONSOLEWORKS WINDOWS EVENT FORWARDER START-UP GUIDE

Setting up Hyper-V for 2X VirtualDesktopServer Manual

Creating Custom Nameservers Contents

VoIPon Tel: +44 (0) Fax: +44 (0)

Patriots Outlook Configuration

MultiSite Manager. Setup Guide

Windows Vista: Connecting to the wireless network at Hood College

NetMotion + YubiRADIUS Quick Start Guide

How To Create A Mailbox In Windows Mail On A Pc Or Mac Or Ipad (For A Mac)

Introductions. Christopher Cognetta Practice Manager Client Field Engineering Microsoft Dynamics CRM MVP

Administrator Guide. v 11

ESET SECURE AUTHENTICATION. Check Point Software SSL VPN Integration Guide

Installing Kaspersky Security Center 10.0 on Microsoft Windows Server 2012 Core Mode

Microsoft Outlook 2010

Sentral servers provide a wide range of services to school networks.

SETTING UP REMOTE ACCESS ON EYEMAX PC BASED DVR.

Knights Outlook 2013 Configuration

nexvortex Setup Guide

CONFIGURING MNLB FOR LOAD BALANCING EXCHANGE 2013 CU2 CAS SERVERS FOR HIGH AVAILABILITY

1. Open the preferences screen by opening the Mail menu and selecting Preferences...

Here are the steps to configure Outlook Express for use with Salmar's Zimbra server. Select "Tools" and then "Accounts from the pull down menu.

How To Create An Easybelle History Database On A Microsoft Powerbook (Windows)

IIS, FTP Server and Windows

HP Device Manager 4.7

Quick Reference Guide: Business Mail

Configuring Outlook Express

Acano solution. Virtualized Deployment R1.1 Installation Guide. Acano. February B

Remote Monitoring Service - Setup Guide for InfraStruXure Central and StruxureWare 1 5

Accessing the Media General SSL VPN

Configure your firewall for administrative access via RADIUS authentication

Knights Outlook Configuration

How to Create a Basic VPN Connection in Panda GateDefender eseries

Introduction to the DANE Protocol

NETASQ ACTIVE DIRECTORY INTEGRATION

Step-by-Step Setup Guide Wireless File Transmitter FTP Mode

6.0. Getting Started Guide


Versions Addressed: Microsoft Office Outlook 2010/2013. Document Updated: Copyright 2014 Smarsh, Inc. All right reserved

VPN Consortium Scenario 1: Gateway-to-Gateway with Preshared Secrets

Step by Step: vcenter Syslog Collector installation

Reverse Proxy Guide. Version 2.0 April 2016

Outlook Express POP Instructions - Bloomsburg University Students

StarterPlus Mailbox Software Setup Guide

RSA Security Analytics

X-ROAD 5 SECURITY SERVER USER'S GUIDE

Network Configuration Settings

Configuring Outlook 2010 for Windows

Hosted Microsoft Exchange Client Setup & Guide Book

Outlook Express. Make Changes in Red: Open up Outlook Express. From the Menu Bar. Tools to Accounts - Click on. User Information

Open Thunderbird. To set up an account in Thunderbird, from the Tools menu select Account Settings; choose account; then click Next.

CSC E Mail. Mobile Device Configuration Settings and Setup Instructions

Configure and enable remote access for windows operating system

Testing New Applications In The DMZ Using VMware ESX. Ivan Dell Era Software Engineer IBM

Getting started with One Search for Destiny. Overview. Before you start. Enabling the One Search service

PC Monitor Enterprise Server. Setup Guide

CONFIGURATION AND SETUP USER GUIDE AND REFERENCE MANUAL

WildFire Reporting. WildFire Administrator s Guide 55. Copyright Palo Alto Networks

Fujitsu Global Cloud Platform Basic System Setup Windows VM

ENABLING RPC OVER HTTPS CONNECTIONS TO M-FILES SERVER

Quick Start Guide: Utilizing Nessus to Secure Microsoft Azure

DDNS Management System User Manual V1.0

Transcription:

csc Security server configuration Security server 5.0x. Version 0.3 pmuhonen 4/15/2014

Date Version Description 10.3.2014 0.1 Initial version 24.3.2014 0.2 - changed LY-tunnus to Y-tunnus - Section 10 -Producer Registry code format change to FI-<Y-tunnus>-<databaseshortname> 15.4.2014 0.3 Changes to Producer s naming, page 14 Contents 1. Purpose of this document... 3 2. Before you continue... 3 3. Connecting Security Server Web management... 3 4. Logging in, Web interface... 5 5. Adding Central Servers... 5 6. Adding the DNS-key fingerprint... 7 7. Adding CA certificate... 10 8. Running Reconfigure and Tests... 11 9. Adding certificate requests, consumer request... 13 10. Adding certificate requests, Database/Registries request... 14 11. Checking your Security servers registration status... 16 2

1. Purpose of this document This document gives the reader a simplified configuration manual for Xtee Security server 5.0 software configuration. Using steps described in this manual Security server administrator can join his server to Palveluväylä development environment. 2. Before you continue You cannot fully configure Security server before Palveluväylä operator (currently CSC on behalf on VM) has granted your server access to Central servers and monitoring server. To join Palveluväylä development, please send an email to pvaylakehitys@csc.fi. In that email you should add following information Organization name, address Contact person's name, email, mobile number and role in organization Secondary contact person's name, email, mobile number and role in organization Y-code (Y-tunnus) or, if private person in question, mobile number Secure server IP address (static IPV4) Joining process in short after you have installed your Secure server Sending joining request with needed information to CSC CSC sending firewall opening confirmation and server keyprints Joining organization: finalizing configuration of Secure server and after that creating and sending key request(s) to CSC CSC sends confirmation that Secure server(s) have been added to Palveluväylä Joining organization checks using their Secure servers web interface that Security server is successfully added to Palveluväylä 3. Connecting Security Server Web management Connection (SSL) to port 3000 3

Select Add Exception Select Confirm Security Exception 4

4. Logging in, Web interface Type in webadmin password 5. Adding Central Servers Select Configuration -> Servers. Select Add 5

Type in 86.50.27.11 and press Save Press Save once more Changes saved 6

Add the second Central Server 86.50.27.40 using the same procedure 6. Adding the DNS-key fingerprint Select Configuration -> Keys and certificates -> DNS keys. Add the DNS-key fingerprint by pressing Add new key and the primary Central Server IP (you ll get the fingerprint from CSC) 7

Type in DNS key Fingerprint and Press Save. Failure during saving indicates, that network ports are not open to Central server as needed Remember to press Save second time to finalize changes 8

Changes Saved 9

7. Adding CA certificate Select Configuration -> Keys and certificates -> CA certificates. Click Add new Type in CA fingerprint (provided by CSC) and press Save 10

CA fingerprint added 8. Running Reconfigure and Tests Select Configuration -> Reconfigure all. Click Reconfigure all After successful reconfiguration 11

Select System > Diagnostics. Click Test all If all is as supposed, test 9 will fail and the last test was not run 12

9. Adding certificate requests, consumer request That kind of request is made if your organization is consuming resources from Palveluväylä; this is: you are not providing database services, you are consuming those available to your system. Select Configuration -> Organization and click Add Type in Y-tunnus of your organization in Registry code field and the name of your organization in Organization s name field. Click Save 13

Click Save certification request Select Save File and click OK. This certificate request should be sent to pvaylakehitys@csc.fi) (send it as a reply to IP-opening confirmation from CSC) with following information Type of an request: Consumer certreq.gz as an attachment your organization s name that you used when creating certificate request exact registry code (Y-tunnus) that you used when creating certificate request your Security server s IP 10. Adding certificate requests, Database/Registries request That kind of request is made if your organization is providing database services in Palveluväylä development environment 14

Select Configuration -> Databases / Registries. Click Add Type in Registry code in format FI-<Y-tunnus>-<databaseshortname>. For example: FI-1234567-8-dbtest1 Max total length of Registry code is 20 chars/digits. Type in the name of your organization in Organization s name - databaseshortname field. For example: Organisaatio - dbtest1. Click Save The same Registry code and the same Organization name can exist only once on the same Security server. 15

Click Save certification request Select Save File and click OK. This certificate request should be sent to pvaylakehitys@csc.fi) (send it as a reply to IP-opening confirmation from CSC) with following information Type of an request: Producer certreq.gz as an attachment organization s name that you used when creating certificate request exact Reg. code/short Name (FI-Y-tunnus-tietokantanimi) that you used when creating certificate request your Security server s IP 11. Checking your Security servers registration status 16

Click Authentication keys Click Load Certificates Click Save Final View 17