Nuance Management Center

Table Of Contents
Administrating Dragon with the Nuance Management Console
Notes:
n If you select PFX file for the Certificate Store Type, for the Certificate Store select
Other and enter the name of the file in the associated text box below it.
n If you select PFX Blob for the Certificate Store Type, for the Certificate Store
select Other and enter the binary contents of a PFX file (for example, the PKCS12) in
the associated text box below it.
Certificate store password
Enter the password for the Certificate Store on the local machine if one is required.
SSL Protocols
Use general SSL protocols
Use this section to enable/disable the supported security protocols on the HTTPS server.
n TLS1Version 1 of the Transport Layer Security (TLS) protocol.
n SSL3—Version 3 of the Secure Sockets Layer (SSL) protocol.
n SSL2—Version 2 of the Secure Sockets Layer (SSL) protocol.
n PCT1—Version 1 of the Private Communications Transport (PCT) protocol.
Notes:
n Although a number of sites still support SSL2, Nuance recommends that you disable it
because of potential security vulnerabilities.
n If you select Using OpenSSL, this functionality is provided by the Cipher List.
Use Open SSL
Select Using OpenSSL if the HTTPS server uses OpenSSL as a Certificate Authority.
OpenSSL is a free non-commercial implementation of SSL.
When you select Using OpenSSL, you must provide:
n Cipher List—A string that controls the ciphers to be used by SSL. The cipher list
consists of one or more cipher strings separated by colons.
n Certificate Authority File—Name of the file containing the list of certificate
authorities (CAs) trusted by your application. The file set by this property should
contain a list of CA certificates in PEM format.
n CA DirectoryPath to a directory containing CA certificates. The path set by this
property should point to a directory on the server machine containing CA certificates in
PEM format.
Recommended settings for SSL web servers
For selections that Dragon Group requires you to make while installing a particular type of
secure web server, refer to the instructions for installing that secure web server in the
Configuration and Client Installation Guide.
99