Black Box ET0100A Appliance Trim Kit User Manual


 
Using a Common Access Card
EncrypTight User Guide 297
NOTE
When Common Access Card Authentication is enabled, users of the EncrypTight software can log in
without using passwords if the deployment includes only ETEPs running software version 1.6 or later.
However, passwords are still required when administrative users log into the ETEPs using the serial port
and through SSH.
Handling Common Name Lookup Failures
When Common Access Card Authentication is enabled, the user accounts for all users who attempt to log
into EncrypTight must be configured with common names that match the identity certificate used on their
CAC. If the common names do not match or if the user account does not include a common name, by
default EncrypTight prompts for a valid user name and password.
If this failsafe mechanism is deactivated, you can be locked out of the system and unable to make
changes or troubleshoot the system. However, to provide even greater security you can disable this
backup user ID and password prompt.
To specify how to handle common name failures:
1 In EncrypTight, choose Edit > Preferences.
2 Expand the ETEMS item and click Login.
3Click On CAC CN Failure, enable User ID/Password authentication to enable or disable the
option.
4Click Apply and click OK.