|
|
---|
IMPORTANT
|
For more information on registering a key pair and server certificate file, see "Registering a Key Pair File and Server Certificate File Installed from a Computer."
|
IMPORTANT
|
For more information on registering a CA certificate file, see "Registering a Key Pair File and Server Certificate File Installed from a Computer."
|
IMPORTANT
|
This function is available only if the Universal Send Digital User Signature Kit is activated and you log in to the machine using the SSO-H login service.
|
NOTE
|
You can use a digital signature file with the following properties:
File format: PKCS#12
File extension: '.pfx' or '.p12'
You can use a user certificate with the following properties:
Format: X.509 version 3
Key length: 1024 bits/2048 bits
Encryption algorithm: RSA
|
IMPORTANT
|
If there is more than a 30 minute difference between the current time set in the computer registered by the Active Directory and the time set in the computer that you use for login, an error occurs when you log in using SSO-H. To be able to log in using SSO-H, it is necessary to match the current time on both the computers.
|
NOTE
|
You must use the user login name (pre-Windows 2000) registered in Active Directory in order to then enter a user name for SSO-H authentication.
You can use only alphanumeric characters, . (period), - (hyphen), or _ (underscore) for a user name for SSO-H authentication. You can log in only if you use valid characters.
You can select up to four trusted domain names in addition to the domain name the machine belongs to for the DNS Domain Name.
Even if you install multiple login services, they cannot be used simultaneously. Only the login screen for the set login service is displayed.
|
IMPORTANT
|
Up to 100 user certificates can be installed, with a maximum of one user certificate per user. An error is displayed if you attempt to install more than 100 certificates, or more than one user certificate for a user.
|