HP LaserJet Enterprise, HP LaserJet Managed, HP PageWide Enterprise, HP PageWide Managed - Configuration Guide using the Embedded Web Server (EWS)

FIPS Conguration. Enable Federal Information Processing Standards (FIPS) mode. This mode enforces the use
of cryptographic suites and protocols to comply with the FIPS-140 standards for computer security.
NOTE: The browser might lose connectivity during the reconguration process.
Troubleshooting Secure Communication. Enable the logging features to record events that occur when the
product makes connections (as a client) to a secure server (such as email or network folder). These records can
be used for troubleshooting secure connectivity failures.
Mgmt. Protocols
This page allows you to congure and manage security protocols for this device.
Web Mgmt. Set the security management level for the Embedded Web Server. You can allow trac over both
HTTP and HTTPS , or choose HTTPS only. For secure management, HTTPS (Secure HTTP) is used to ensure
secure communications between a Web browser and the Embedded Web Server. For HTTPS, you may use the
preinstalled Jetdirect certicate (X.509) or congure a new one, and you can select an encryption level
(supported cipher suites are DES, RC4, 3DES).
The factory-default setting depends on the print server model and the features supported by the device.
Typically, the default setting is to allow trac over HTTP and HTTPS. However, for selected print server models
on devices that support IPsec, the factory default requires all trac (except IPP trac) to use HTTPS only.
SNMP. Congure SNMP (Simple Network Management Protocol) operation. You may enable or disable the SNMP
v1/v2c or SNMP v3 agents on the print server. For SNMP v1/v2c, you can choose to control access through
custom SNMP community names and selectable options for the Get Community Name "public". For SNMP v3, you
may set up an account that allows a management application to access the SNMP v3 agent.
Other. Enable or disable printing protocols, print services, discovery protocols, name resolution services, and
conguration management protocols as desired for security. This allows you to control access through protocols
that may not be secure.
802.1X Authentication
This page allows you to congure 802.1X authentication settings on the Jetdirect print server as required for
client authentication on your network. In addition, you can reset the 802.1X authentication settings to factory-
default values.
USE CAUTION when changing the 802.1X authentication settings; you may lose your connection. If
communication with the device is lost, you may need to reset the print server to a factory-default state and
reinstall the device.
Supported 802.1X authentication protocols and conguration settings depend on the print server model and
rmware version. Full-featured print servers support the following protocols:
PEAP. Protected Extensible Authentication Protocol (PEAP) is a mutual authentication protocol that uses
digital certicates for network server authentication and passwords for client authentication.
EAP-TLS. Extensible Authentication Protocol using Transport Layer Security (EAP-TLS) is a mutual
authentication protocol based on digital certicates for authentication of both the client and the network
authentication server.
Both PEAP and EAP-TLS use dynamic encryption keys for secure communications. If an authentication failure
occurs, you can select whether to connect anyway or block access.
ENWW Networking Tab 39