Versions Compared
Key
- This line was added.
- This line was removed.
- Formatting was changed.
During system deployment stage it is necessary to set up configuration files of each service. Configuration files of all system services are located in the root directory of IIS web applications (default path is %SystemDrive%\inetpub\wwwroot).
Info |
---|
Card Monitor service configuration files are located in %ProgramFiles%\Axidian CertiFlow\CardMonitor. |
Configuration files are set up viaAxidian CertiFlow Configuration Wizardwhich runs automatically if you check the option Run Axidian CertiFlow Configuration Wizard in Installation Wizard.
Or you can run the configuration wizard manually: Start - All Programs – Axidian.
Image Removed
, a component which is installed separately.
Tip |
---|
System requirements for Axidian CertiFlow Configuration Wizard are the same as for Axidian CertiFlow server. |
Installing Axidian CertiFlow Configuration Wizard
Run the AxidianCertiFlow.Wizard-<version number>.x64.en-us.msi from Axidian CertiFlow installation package and follow the wizard instructions to complete the installation.
Note |
---|
For security reasons, we recommend that you disable the Axidian CertiFlow Configuration Wizard after you complete the system configuration:
|
Authentication in Axidian CertiFlow Configuration Wizard
Use a temporary authentication code to access Axidian CertiFlow Configuration Wizard. The authentication code is generated when you start the IIS Axidian CertiFlow Wizard application pool. The code is saved in the wizard_authentication_code.txt file in logs subfolder (C:\inetpub\wwwroot\cm\wizard\logs).
Open wizard_authentication_code.txt and copy the authentication code.
Code Block title Example: 2023-09-20 09:40:06.1557|AuthenticationCode: "YoQZdL2mJC4pYmKJmC7YT8mXDv3FPj2v"
Open https://<FQDN name of the server>/cm/wizard page in your browser.Enter the authentication code and log in.
Scroll Pagebreak |
---|
Configuring the system
scroll-pagebreakHere are the Axidian CertiFlow Setup Configuration Wizard parameters:
Section | Description | ||||
---|---|---|---|---|---|
Before starting work | Axidian CertiFlow Setup Wizard purpose and features | ||||
Restore configuration | Uploading a backup copy of Axidian CertiFlow configuration. | ||||
System features
| Configuring internal settings for Axidian CertiFlow web applications: Management Console
Self-Service
Event Log:
Microsoft CA: Configure settings for working with Microsoft Certification Authority. AirCard Enterprise: Configure integration with Axidian AirCard Enterprise virtual smart card server. Client Agent: Configure Axidian CertiFlow Agent. | ||||
Users catalog
| Information about users catalog and user attributes . The list of tracked user attributes in Microsoft CA certificate templates settings includes the following attributes by default:
| ||||
Access control
| Defining access settings to system services. Specify an account to configure user privileges in Roles of Axidian CertiFlow Management Console.
| ||||
Database Active Directory
| Information about the system's data storage and encryption algorithm. | ||||
Card Monitor service | Card Monitor service controls smart card usage. Operations:
For Card Monitor service to work properly, create a service role with an account for Card Monitor in Roles section and define the following privileges for the role:
| ||||
Confirmation | Summary of all Configuration Wizard settings and creating a backup copy of Axidian CertiFlow configuration. After you click Apply, the specified values for all settings will be saved in configuration files for all applications and stored in the C:\inetpub\wwwroot\cm\wizard\configs folder. | ||||
Results | Information about saving the specified values to the service configuration files. You can upload the configuration files to an archive (Save configuration files option) to transfer and apply the settings to the system server. When installing Axidian CertiFlow for the first time, save a copy of your configuration settings (option Backup current configuration settings in Confirmation sectionoption). Configuration backup includes all settings, as well as encryption key and algorithm. When deploying To deploy new system servers, you can use upload the backup file - upload it in Restore configuration section of the wizard.
| Results |
Applying configuration files to the CertiFlow server
Apply the configuration files to the CertiFlow server:
- Run PowerShell as administrator and go to C:\inetpub\wwwroot\cm\wizard\configs.
Run the PowerShell script deploy_configuration.ps1:
.\deploy_configuration.ps1
- Specify the password of the account that is used to launch the Card Monitor service.
Tip |
---|
We recommend that you specify a local account that is used to launch the rest of the CertiFlow web applications. |
Divbox | |
---|---|
|