HP MFP Digital Sending Software (DSS) 5.0 - Security Features

2
Table of Contents
Introduction ............................................................................................................................................ 3
User Accounts and Passwords ................................................................................................................. 3
Security to Run the Configuration Utility (CU) and Connect to the DSS Service ..................................... 3
Windows Account Authorization ...................................................................................................... 3
DSS Account Authorization .............................................................................................................. 3
Permissions required for a non-admin to run the CU with full functionality...................................... 4
Device Credentials for FutureSmart Devices ........................................................................................ 4
Data Encryption with Pre-FutureSmart Devices ....................................................................................... 4
Data Security Using SSL / TLS ................................................................................................................... 4
Brief Overview of SSL / TLS Protocols ................................................................................................... 4
Client and Server definitions ............................................................................................................ 5
Asymmetric Cryptography ............................................................................................................... 5
Certificates and Certificate Authorities............................................................................................. 5
SSL/ TLS levels.................................................................................................................................. 7
Server Certificate Validation ............................................................................................................ 8
SSL / TLS communication with FutureSmart Devices .......................................................................... 11
SSL / TLS communication between the DSS CU and the DSS Service ................................................... 11
SSL / TLS communication with the SQL Server database ..................................................................... 12
SSL/TLS communications with LDAP servers....................................................................................... 14
SSL / TLS communication with SMTP servers...................................................................................... 15
SSL / TLS communication with SharePoint sites.................................................................................. 16
Device Access of Address Book Information in the DSS Database ........................................................... 17
E-mail Signing and Encryption ................................................................................................................ 17
FIPS Security Policy in Windows ............................................................................................................. 18
PDF Encryption when using DSS OCR ..................................................................................................... 19