User Manual

imageWARE Remote – Technology Whitepaper Canon U.S.A., Inc., All rights reserved.
20
RDS Plug-in
failure recovery
measures
In the event that there is a physical failure on the server hosting iWEMC RDS
Plug-in, the settings for the RDS Plug-in can be restored with the XML
configuration file. Therefore it is important for the server administrator to
maintain a backup of the configuration file.
However, the jam log and alarm log kept by the RDS Plug-in are not included
in this configuration file and may be lost.
Authentication
Procedures
Server Authentication
The UGW utilizes SSL authentication together with application
authentication. The RDS Plug-in will only transmit data to the UGW server
using these methods.
1) SSL Authentication
SSL Authentication is performed according to the following procedures.
Please note the following steps describe the SSL protocol and are not specific
to Canon technology.
“Root Certificates” published by Verisign are packaged with the RDS
Plug-in. After installing the RDS Plug-in, the certificate must be
registered on the UI of the RDS Plug-in.
When the RDS Plug-in starts communicating, it receives the “Server
Certificate” published by Verisign from the UGW by HTTPS.
The RDS Plug-in compares the “Server Certificates” with the “Root
Certificates”.
If these certificates match, the RDS Plug-in successfully authenticates
the other communicating party as the UGW server.
The encryption method is negotiated using HTTPS, afterwards,
HTTPS communications begin and the data is encrypted
2) Application level authentication
On the application level, the UGW server will be authenticated by the RDS
Plug-in. Communication will proceed only when the UGW has been
successfully authenticated. This further ensures that the RDS Plug-in will not
communicate with any destination other than the UGW.