- 22 Oct 2024
- 1 Minute à lire
- SombreLumière
- PDF
Configure Password Synchronization Manager for SEAL/SSL
- Mis à jour le 22 Oct 2024
- 1 Minute à lire
- SombreLumière
- PDF
You can secure communication between Password Synchronization Manager and OneSpan Authentication Server via SSL. You can enable SSL for each OneSpan Authentication Server instance individually (via the Use SSL option in the password filter configuration). You need to import the certification authority (CA) certificate for each OneSpan Authentication Server instance configured to use SEAL/SSL to the Windows certificate store of the server where Password Synchronization Manager is installed.
If your organization is impacted by the General Data Protection Regulation (GDPR), each OneSpan Authentication Server configuration must be updated to use encrypted communication via the Use SSL option in the password filter configuration of the PSM Remote Configuration Manager.
For more information on GDPR, refer to the OneSpan Authentication Server General Data Protection Regulation Compliance Guide.
Before you begin
To import a CA certificate you need the following:
Access to the file containing the respective CA certificate
Microsoft Management Console (MMC)
Import OneSpan Authentication Server certificates for SEAL/SSL
To import OneSpan Authentication Server certificates for SEAL/SSL
Start Microsoft Management Console by typing mmc in a command line prompt.
If the Console Root tree does not contain the Certificates snap-in, add the snap-in by doing the following:
Select File > Add / Remove Snap-in.
Highlight the Certificates snap-in the Available snap-ins list and click Add.
If required, select Computer account and Local computer and click Finish.
This step is only necessary if you are logged on using a user account with restricted access rights.
Click OK to return to Microsoft Management Console.
Select Certificates (Local Computer) in the Console Root tree.
In Logical Store Name select Trusted Root Certification Authorities > All Tasks > Import.
The Certificate Import wizard appears.
Click Next to begin.
Select the file name.
Select the certificate store to place the certificate.
Select Place all certificates in the following store and verify that Trusted Root Certificate Authorities is selected under Certificate store.
Click Finish.
Additional considerations
The initial OneSpan Authentication Server setup can create SSL certificates for the different communicator modules automatically. If you are using the SSL certificates created by the OneSpan Authentication Server Configuration Wizard, import ikey_seal_serverca.pem as CA certificate for that OneSpan Authentication Server instance. You need to install the SSL certificates even if OneSpan Authentication Server and Password Synchronization Manager are installed on the same server.
The imported certificate file is not deleted and will remain on the disk after the import.
For more information about encryption, see the Password Synchronization Manager Installation Guide.