Setup Guide

[ScepUserDomain=scep_enrollment_user_domain]
[ScepUserPwd=scep_enrollment_user_password]
[ScepUserPwdEnc=encrypted_scep_enrollment_user_password]
before URL. Currently HTTP is used as the only communication
protocol for SCEP requests and security is ensured by SCEP itself.
CACertHashTypeThis is the hash type used to verify certicate
authority's certicate.
CACertHashThis is the hash value used to verify certicate
authority's certicate. Client will not issue a certicate request to a
SCEP server and cannot pass certicate chain checking through a
valid certicate authority.
EnrollPwd or EnrollPwdEncThese keywords are used to set the
enrollment password from a SCEP administrator.
EnrollPwd is the plain-text enrollment password and EnrollPwdEnc
is the encrypted form of the same enrollment password. Use only
one of these two elds to set the used enrollment password.
As a substitute of using EnrollPwd or EnrollPwdEnc to directly
specify an enrollment password, client allows using a SCEP
administrator's credential to automatically get an enrollment
password from a Windows SCEP server. In this case, the
ScepUser, ScepUserDomain, ScepUserPwd (or
ScepUserPwdEnc, in encrypted form instead of plan-text) are used
to specify the SCEP administrator's credential, and ScepAdminUrl
must be set correctly to specify the corresponding SCEP admin
web page's URL. If neither EnrollPwd nor EnrollPwdEnc is set,
client will try to use these set of settings to automatically get an
enrollment password and then use that password to request a
certicate. If communication security is necessary in your
environment during this phase, please add https:// as the prex for
ScepAdminUrl to use HTTPS instead of the default HTTP protocol.
Use ScepAutoEnroll=no AutoRenew=yes to only enable SCEP auto
renew; all other parameters are not needed if ScepAutoEnroll is set
to no.
NOTE
: SCEP server’s URL must be an HTTP link. Do not
add protocol prex to RequestURL and ScepAdminURL.
SelectServerList={PNA, VDI}
[Default=default_desc]
list of servers {Server1; Server2; ...ServerN}
Allows users to select one PNA or VDI server during logon. For
server use the format:
description = <server’s description> host = <server’s
url> [ <options>]
NOTE: There must be “description” and “host” key words
on each server.
For PNA server options, use the options of the PnliteServer
parameter in Connection Settings: wnos.ini les, {username} INI,
and $MAC INI Files.
PNA example:
SelectServerList=PNA; Default=test3;
description = test1; host =
192.168.0.10; autoconnectlist
=*; reconnectfrombutton=0; description =
test2; host = HostName2.wyse.com; TimeOut=200;
descriprion = test3 host = https://
server3.wyse.com
For a VDI server: If you want to use a VDI broker, specify
ConnectionBroker in wnos.ini. Otherwise the VDI broker’s type is
default.
Parameters for wnos INI les only 35