- Created by Mikhail Yakovlev, last modified on Nov 25, 2022
You are viewing an old version of this page. View the current version.
Compare with Current View Page History
« Previous Version 15 Next »
Configure the Indeed AirKey Enterprise server after it is installed. Configuration is performed using Indeed AirKey Enterprise Setup Wizard, which is started automatically after Indeed AirKey Enterprise server Installation Wizard finishes. In case the corresponding option is checked in the latter, of course.
However, Indeed AirKey Enterprise Setup Wizard can be started manually at any time (Start – All Programs – Indeed Identity).
Sections of Indeed AirKey Enterprise Setup Wizard and describes the parameters that can be defined in each section.
Section | Description |
---|---|
Before starting work | Information on what the Indeed AirKey Enterprise Setup Wizard is intended for, as well as on its features. |
Restore configuration | Loading a backup copy of Indeed AirKey Enterprise configuration. |
Client certificate | Configuring the access to Indeed AirKey Enterprise server using certificates. The certificate that is supplied by the client (Indeed CM system server) should comply with the Certificate filter set. It also has to be issued for Indeed CM, a server name that is used in the connection address. Possible values:
For example:
Enhanced Key Usage section of the certificate should contain the value of Server Authentication. If there are several Indeed CM servers in the infrastructure, then you should specify the certificate OID or Thumbprint for each server using a semicolon as a separator: For example:
|
AirKey Smart Card options | This section defines the parameters of AirKey smart card operation: If the Show all connected AirKey smart cards option is enabled, then the current Windows session of a user should show all AirKey smart cards connected to the workstation. If the option is disabled, only the AirKey smart cards of the current user are shown. That said, the cards of other users are not displayed within Windows session only. The workstation unlock or user change interfaces show all the connected AirKey cards. Select the created Signature certificate. Thumbprint of the signature certificate for Indeed AirKey Enterprise. This is necessary to issue certificates for client workstations. The client certificate is created automatically in the local computer storage upon the first connection of the AirKey smart card to the workstations. |
Database:
| These define the system data storage and data encryption algorithm. Creation of backup copy of encryption key and restoring the key from backup. Parameters of connection to storage are defined depending on the selected storage type. |
Confirmation | This displays summary on settings of all Wizard sections. It is also possible to create a backup copy of Indeed AirKey Enterprise configuration here. When installing the Indeed AirKey Enterprise for the first time, configure the required parameters and make a backup copy (Backup current configuration settings option). You can use this backup to deploy new Indeed AirKey Enterprise servers. To do so, specify the backup file in the Restore configuration section of Setup Wizard. The backup copy of Indeed AirKey Enterprise contains all the parameters defined during the system installation, as well as encryption algorithm and key. Save the backup file to a secure location. |
Results | This displays the Wizard progress on writing the defined values to the configuration files of Indeed AirKey Enterprise services. After the Setup Wizard of Indeed AirKey Enterprise finishes, the defined values of all parameters are written to the configuration file of the application and encrypted. Encryption is performed using the Microsoft .NET encryption key (NetFrameworkConfigurationKey). Encryption algorithm is RSA. |
- No labels