adm53mst.ps

Similar documents
ins53mst.ps

ClientHelpSymantec™ Endpoint Protection 及 Symantec Network Access Control 客户端指南

注 : 在 使 用 本 资 料 及 其 支 持 的 产 品 之 前, 请 务 必 先 阅 读 和 了 解 以 下 信 息 : 安 全 保 修 和 设 置 指 南 第 vi 页 重 要 安 全 信 息 第 163 页 附 录 E 声 明 安 全 保 修 和 设 置 指 南 已 上 传 到 Web 站

扉页.doc

T1028_Manual_KO_V3 0.pdf

典型自编教材

Norton Ghost 15.0 安裝操作指南

产品手册

IronKeyセキュアデバイスACCESS STANDARDユーザーガイド

untitled

Symantec™ Sygate Enterprise Protection 防护代理安装使用指南

User Guide

Desktop Management Guide

Best practices for designing salary structures

Cisco WebEx Meetings Server 2.6 版常见问题解答

南華大學數位論文

ebook37-8

肝病养生.doc

Faronics WINSelect 标准版用户指南

ARIS Design Platform

厨房小知识(四)

妇女更年期保健.doc

小儿传染病防治(上)

<4D F736F F D B875B9B5A448ADFBBADEB27AA740B77EA4E2A5555FA95EAED6A641ADD75F2E646F63>

女性青春期保健(下).doc

避孕知识(下).doc

孕妇饮食调养(下).doc

禽畜饲料配制技术(一).doc

中老年保健必读(十一).doc

i

怎样使孩子更加聪明健康(七).doc

i

二零零六年一月二十三日會議

马太亨利完整圣经注释—雅歌

蒙 恬 科 技 軟 體 用 戶 授 權 協 議 本 許 可 協 議 為 蒙 恬 科 技 股 份 有 限 公 司 ( 以 下 簡 稱 蒙 恬 公 司 ) 授 予 您 合 法 使 用 本 軟 體 程 式 ( 本 軟 體 ) 之 協 議 書, 如 果 您 不 同 意 此 協 議 中 的 任 何 條 款,

Corel PaintShop Pro X4 User Guide

发行说明, 版

快速参考指南

兽药使用常识(六).doc

1. Revo Uninstaller Pro Revo Uninstaller Pro Revo Uninstaller Pro Revo Uninstaller Pro Revo Uninsta ller Pro Revo Uninstaller Pro Revo Uninstaller Pro

G indd

_PhotoDirectorUG.book

Microsoft Word - Entry-Level Occupational Competencies for TCM in Canada200910_ch _2_.doc

Boot Camp 安装与设置指南

Copyright 2007 Hewlett-Packard Development Company, L.P. Microsoft 和 Windows 是 Microsoft Corporation 在 美 国 的 注 册 商 标 Bluetooth 是 其 所 有 者 拥 有 的 商 标,Hew

+01-10_M5A_C1955.p65

The New Office Office 365 Office 2013 Project 2013 Visio 2013 Office 2013

产品手册

T

Digital MacroView™ 检耳镜 - 使用说明

Microsoft Word - 正文.doc

Welch Allyn

使 用 本 Brother 设 备 之 前 适 用 型 号 注 释 说 明 商 标 重 要 注 释 适 用 型 号 本 使 用 说 明 书 适 用 于 以 下 型 号 : 2.7 英 寸 触 摸 显 示 屏 型 号 :MFC-J 英 寸 触 摸 显 示 屏 型 号 :MFC-J272

Panaboard Overlayer help

untitled

WebSphere Studio Application Developer IBM Portal Toolkit... 2/21 1. WebSphere Portal Portal WebSphere Application Server stopserver.bat -configfile..

Microsoft Word - ssl_validation_white_paper_v1.03

个人网上银行专业版客户使用手册

I

肝病养生.doc

untitled

MSAC-EX1

untitled

前言

(Chi)_.indb

14A 0.1%5% 14A 14A

清华得实WebST网络安全行业解决方案

CL-S10w

穨_2_.PDF

jsj0.nps

女性减肥健身(四).doc

Acronis True Image 2015

FA-3000_Ver1.00

穨學前教育課程指引.PDF

软件概述

T

第二章

(untitled)

2 连 接 电 源 线 a 确 保 电 源 开 关 已 打 开 b 打 开 墨 仓 盖 a 警 告 本 设 备 必 须 配 备 接 地 插 座 此 时 切 勿 连 接 接 口 电 缆 ( 如 果 您 正 在 使 用 USB 接 口 电 缆 ) a 连 接 电 源 线 在 您 填 充 墨 仓 之 前,

单 元 / 页 数 内 容 标 准 学 习 标 准 教 学 步 骤 及 活 动 教 具 BC 1.1 男 孩 女 孩 BC 2.1 白 纸 有 礼 貌 地 与 人 沟 通 BC 3.3 认 识 字 词 ( 第 1 页 ) 单 元 一 : 我 1 男 女 作 出 反 应 BC 2.1.4(a) 应 用

AXIS P7224 Video Encoder Blade – Installation Guide

Serial ATA ( Silicon Image SiI3114)...2 (1) SATA... 2 (2) B I O S S A T A... 3 (3) RAID BIOS RAID... 5 (4) S A T A... 8 (5) S A T A... 10

北 美 医 学 基 金 会 和 教 育 基 金 会 首 席 执 行 官 丁 文 京 来 我 院 访 问 交 流 韩 国 仁 丨 丨 医 疗 集 团 代 表 团 来 我 院 参 观 交 流 我 院 与 天 津 市 眼 科 医 院 签 署 友 好 合 作 医 院 协 议 书 " 首 届 甘 肃 省 萃

蒙 恬 科 技 軟 件 用 戶 授 權 協 議 本 許 可 協 議 為 蒙 恬 科 技 股 份 有 限 公 司 ( 以 下 簡 稱 蒙 恬 公 司 ) 授 予 您 合 法 使 用 本 軟 件 程 式 ( 本 軟 件 ) 之 協 議 書, 如 果 您 不 同 意 此 協 議 中 的 任 何 條 款,

Windows XP

目 录 软 件 概 述 软 件 用 途 软 件 运 行 系 统 配 置... 3 使 用 入 门 软 件 登 录 与 退 出 页 面 介 绍... 6 组 别 账 号 编 辑 组 别 编 辑.

Jiayuan International Group Limited , ,787, % 52% , , % % 3,

ebook 145-6

第一章

IronKey F150 USBメモリ ユーザーガイド

(i) (4)0.10 (1) 0.40 (ii) (iii) (i) (ii) ,000,000125,000,000 1,250,000, (iv) 3,750,000, ,000,000 1,250,000,00

Enrolment

一、

Table of Contents Design Concept 03 Copyrights & TradeMark 04 Special Notice 05 Notice to concerned 05 Installation and Registration Introduction 07 s

穨series019-IA.PDF

婴幼儿护理(六).doc

公 務 員 事 務 局

<55342D323637CBB5C3F7CAE92E786C73>

Cadence SPB 15.2 VOICE Cadence SPB 15.2 PC Cadence 3 (1) CD1 1of 2 (2) CD2 2of 2 (3) CD3 Concept HDL 1of 1

2005 Sun Microsystems, Inc Network Circle, Santa Clara, CA U.S.A. Sun Sun Berkeley BSD UNIX X/Open Company, Ltd. / Sun Sun Microsystems Su

Transcription:

IBM 5.3

IBM 5.3

2004 5 69 A, 77 D, IBM Copyright International Business Machines Corporation 2004. All rights reserved.

................ v............ vi............. vi..... vi Tivoli Access Manager............... vi...... vi............... vi 1............. 1 IBM........... 1 IBM........... 1 IBM........... 1........... 2.............. 2............ 3............ 3 ESS............... 3............ 3 IBM.......... 4 CSS PKI........ 4 2.... 7.............. 7 FFE......... 7 FFE........... 8....... 9............... 9......... 9 IBM FFE... 9 IBM FFE........ 9 FFE..... 9...... 9.......... 10............ 10........... 10 3 CSS...... 11 CSS......... 11............. 11............ 11........ 12.......... 12..... 12.... 13.... 13.............. 15.............. 15............. 15........ 15........... 15....... 16.... 17.... 17............. 18........... 18............ 18 FFE......... 19 IBM............. 19............. 19 4.... 21 1 Outlook Express Windows 2000 Windows XP..... 21 Example 2 Lotus Notes Windows 2000 IBM............ 22 3 Tivoli Access Manager Netscape Windows 2000 IBM.............. 22 5.......... 25............ 25............... 25.............. 25............... 26............... 27.............. 27 6 UVM.... 29 Windows UVM......... 29 UVM...... 29 UVM.......... 29 UVM............ 30 UVM......... 30 Lotus Notes UVM...... 31 Lotus Notes UVM................ 31 Lotus Notes UVM...... 32 Lotus Notes UVM.. 32 Lotus Notes UVM 33 IBM PKCS#11.... 33 IBM PKCS#11... 33 IBM... 34............. 34 PKCS#11....... 34 7 UVM....... 35 UVM............. 35.............. 36.............. 36 UVM......... 37 UVM.......... 38 Copyright IBM Corp. 2004 iii

8...... 39............ 39............ 40............. 40............. 41............. 41.............. 41........... 43 Tivoli Access Manager...... 43 Tivoli Access Manager 43........... 43............. 44........ 44 IBM......... 44 IBM... 45 Entrust............ 45 9........ 47 UVM......... 47............. 47............ 47.......... 47 Windows XP..... 48.......... 49 Web....... 49 Microsoft... 49 Microsoft..... 49 Microsoft CSP....... 50 Microsoft..... 50 Microsoft..... 50 UVM.......... 51 10.......... 53.............. 53.............. 53.............. 53 BIOS ThinkCentre.... 53 ThinkPad....... 54............ 55 IBM ThinkCentre.. 55 IBM ThinkPad... 55 CSS V5.2....... 56.............. 56.............. 57.......... 57 Targus........ 57 BIOS........... 57 Netscape 7.x........... 57............. 58............. 58 +..... 58 Windows XP....... 58............... 58 Windows.. 58 Netscape.. 58 IBM.... 59 Lotus Notes UVM... 59.......... 59 Tivoli Access Manager........ 60.............. 60.............. 60........... 60....... 61....... 62 ThinkPad...... 62 Microsoft......... 63 Netscape....... 64.......... 66 Tivoli Access Manager..... 66 Lotus Notes........ 67........... 67 UVM........ 67 A. 69 B......... 71............. 71............ 71 UVM............ 71 TCPA TCPA...... 72.............. 73........... 73........... 73 C. UVM................. 75 D.......... 77................. 77................. 77 iv IBM 5.3

1, PKI 2, IBM 3, CSS CSS 4, IBM 5, IBM UVM 6, UVM Lotus Notes UVM Netscape UVM 7, UVM UVM UVM UVM 8, UVM IBM 9, UVM 10, A, B, UVM C, UVM UVM D, Copyright IBM Corp. 2004 v

v IBM v IBM UVM v IBM IBM Tivoli Access Manager IBM Tivoli Access Manager UVM Tivoli Access Manager v Tivoli Access Manager v v IBM DCE v IBM SecureWay Directory LDAP IBM UVM Tivoli Access Manager http://www.pc.ibm.com/us/security/secdownload.html IBM Web IBM Tivoli Access Manager Tivoli Access Manager Tivoli Access Manager UVM Tivoli Access Manager IBM UVM UVM UVM http://www.pc.ibm.com/us/security/index.html IBM Web vi IBM 5.3

1 ThinkPad TM ThinkCentre TM PC IBM ESS IBM IBM CSS IBM IBM IBM IBM IBM ESS PKI v FFE v v Windows v IBM ESS IBM IBM IBM PC IBM v RSA3 PKI v RSA v v 200 RSA v RSA EEPROM v Vs. 1.1 TCPA v LPC IBM IBM Copyright IBM Corp. 2004 1

v v v UVM Windows UVM IBM v UVM UVM UVM UVM UVM Windows UVM Windows UVM UVM IBM IBM 8 v v v v IBM v v v BIOS ThinkCentre Trusted Computing Group, TCG IBM 2 IBM 5.3

IBM v v IBM v IBM v v TCG SRK IBM v IBM v v ESS IBM IBM IBM UVM Windows 1 3

IBM IBM IBM IBM IBM IBM Windows Windows IBM IBM CSS IBM IBM IBM ESS 25 IBM ESS IBM CSS PKI PKI 4 IBM 5.3

v IBM UVM v IBM IBM v IBM IBM Microsoft CryptoAPI Internet Explorer Microsoft Outlook Express IBM Netscape IBM PKCS #11 Netscape Messenger IBM v IBM IBM Microsoft CSP IBM CSP IBM IBM CSP v PKI IBM IBM v CSS v IBM Targus PC Targus USB Targus v IBM v UVM CSS v FIPS 140-1 FIPS 140-1 FIPS RSA BSAFE TCPA v UVM 1 5

6 IBM 5.3

2 IBM v v IBM IBM IBM FFE IBM IBM v v UVM IBM.$enc$ FFE IBM Web IBM FFE FFE CSS FFE FFE v UVM v v FFE Copyright IBM Corp. 2004 7

Check Disk FFE UVM Windows FFE v v v 8 IBM 5.3

v Windows FFE IBM FFE C Shift+Del Shift+Del IBM FFE IBM FFE V2.0 IBM Web ACL FFE V2.0 IBM FFE IBM FFE IBM FFE FFE IBM FFE IBM FFE v v 1. 2 9

2. Shift+Del IBM FFE PROGRAM.EXE, IBM FFE v v Windows 10 IBM 5.3

3 CSS IBM UVM TCPA CSS CSS v v v UVM TCPA IBM 5.1 CSS TCPA A CSS B 1. A 2. CSS B CSS CSS CSS CSS 1. CSS 2. c:\roaming 3. 4. CSS Copyright IBM Corp. 2004 11

5. 6. c:\roaming 7. 8. c:\roaming 9. 1. 2. B 3. 8 UVM 4. B 5. B 6. B 1. 2. 3. CSS 4. A A 12 IBM 5.3

1. CSS 2. A A 3. A 1. csec.ini CSS.ini 2. csssetup enableroaming=1 3. username=option v 1 [promptcurrent].dat sysregpwd v 2 [current].dat sysregpwd v 3 joseph joseph.datsysregpwd 4. 2 3 sysregpwd=sysregpw 2 3 5. csec.ini csec.ini CSS 6. csec.ini csec.ini csec.ini v v 1 1 v 2 2.ini v 3 3.ini.ini 3 CSS 13

CSEC.INI [CSSSetup] 1 [CSSSetup] 2 [CSSSetup] 3 [CSSSetup] suppw=bootup suppw=bootup suppw=bootup suppw=bootup hwpw=11111111 hwpw=11111111 hwpw=11111111 hwpw=11111111 newkp=1 newkp=1 newkp=1 newkp=1 keysplit=1 keysplit=1 keysplit=1 keysplit=1 kpl=c:\jgk kpl=c:\\computer name\jgk kpl=c:\\computer name\jgk kpl=c:\\computer name\jgk kal=c:\jgk\archive kal=c:\\computer kal=c:\\computer kal=c:\\computer pub= name\archive name\archive name\archive c:\jk\admin.key pri= c:\jk\private1.key pub= pub= pub= wiz=0 c:\jk\admin.key c:\jk\admin.key c:\jk\admin.key pri= pri= pri= c:\jk\private1.key c:\jk\private1.key c:\jk\private1.key wiz=0 wiz=0 wiz=0 clean=0 enableroaming=1 enableroaming=1 enableroaming=1 username= username= username= [promptcurrent] [current] joseph sysregpwd=12345678 sysregpwd=12345678 clean=0 clean=0 clean=0 [UVMEnrollment] [UVMEnrollment] [UVMEnrollment] [UVMEnrollment] enrollall=0 enrollall=0 enrollall=0 enrollall=0 enrollusers=1 enrollusers=1 enrollusers=1 enrollusers=1 user1=joseph user1=joseph user1=joseph user1=joseph user1uvmpw= user1uvmpw=q1234r user1uvmpw=q1234r user1uvmpw=q1234r q1234r user1winpw= user1winpw= user1winpw= user1winpw= user1domain=0 user1domain=0 user1domain=0 user1domain=0 user1ppchange=0 user1ppchange=0 user1ppchange=0 user1ppchange=0 user1ppexppolicy=0 user1ppexppolicy=0 user1ppexppolicy=0 user1ppexppolicy=0 user1ppexpdays= 184 user1ppexpdays=184 user1ppexpdays=184 user1ppexpdays=184 [UVMAppConfig] [UVMAppConfig] [UVMAppConfig] [UVMAppConfig] uvmlogon=0 uvmlogon=0 uvmlogon=0 uvmlogon=0 entrust=0 entrust=0 entrust=0 entrust=0 notes=0 notes=0 notes=0 notes=0 netscape=0 netscape=0 netscape=0 netscape=0 passman=0 passman=0 passman=0 passman=0 folderprotect=0 folderprotect=0 folderprotect=0 folderprotect=0 autoprotect=0 autoprotect=0 autoprotect=0 autoprotect=0 14 IBM 5.3

CSS CSS UVM UVM GINA Windows Windows > > Access IBM > IBM > 3 CSS 15

UVM GINA UVM GINA UVM UVM 1. Windows Windows 2. Windows 2000 UVM GINA 1. UVM 2. 3. 4. Windows Windows 5. 6. 7. Windows XP UVM GINA 1. UVM 2. 3. 4. Windows 5. 6. UVM 1. 2. 16 IBM 5.3

3. UVM 4. UVM 1. 2. 3. 4. UVM UVM 1. 2. 3. 4. 1. 2. 3. 4. 1. 2. 3 CSS 17

3. 4. CSS 5. v v Protected CSS IBM 1. 2. 3. 1. a. b. c. d. e. 2. a. b. c. d. 18 IBM 5.3

e. FFE IBM A A B B IBM TCPA TCPA 3 CSS 19

20 IBM 5.3

4 IBM Windows 2000 Windows XP UVM IBM 1 Outlook Express Windows 2000 Windows XP IBM 1 Windows 2000 Outlook Express 2 Windows XP Outlook Express 1 UVM 2 UVM UVM Windows UVM UVM 1. 1 2 2. UVM UVM http://www.pc.ibm.com/us/security/secdownload.html 3. UVM a. UVM UVM 1 UVM b. Windows UVM c. 1 1 UVM 4. UVM v Windows v v Outlook Express 5. Windows UVM 6. UVM UVM IBM v UVM Windows Copyright IBM Corp. 2004 21

v v Outlook Express Example 2 Lotus Notes Windows 2000 IBM IBM 1 2 Windows 2000 Lotus Notes 1 UVM 2 Windows UVM 1 UVM 2 1. 1 2 UVM 1 2 2. UVM a. UVM UVM 1 UVM b. Windows UVM 3. UVM Lotus Notes 4. 1 UVM 2 UVM Lotus Notes Windows 38 UVM 5. Windows UVM 6. UVM 3 Tivoli Access Manager Netscape Windows 2000 IBM Tivoli Access Manager UVM IBM Windows 2000 Netscape NetSEAT Tivoli Access Manager LDAP LDAP UVM Tivoli Access Manager UVM UVM Windows UVM 1. Tivoli Access Manager Tivoli Access Manager 2. UVM 3. UVM UVM http://www.pc.ibm.com/us/security/index.html 22 IBM 5.3

4. UVM 27 a. UVM UVM b. Windows UVM c. IBM 5. Tivoli Access Manager Tivoli Access Manager 6. UVM UVM Tivoli Access Manager v Windows v v Outlook Express 38 UVM 7. Windows UVM 8. IBM PKCS#11 Netscape IBM 9. Tivoli Access Manager Tivoli Access Manager IBM 10. UVM 11. v UVM Windows v v v Netscape 4 23

24 IBM 5.3

5 Windows UVM IBM UVM IBM UVM v IBM v Tivoli Access Manager UVM IBM Windows UVM UVM UVM 256 UVM UVM IBM IBM UVM UVM v UVM UVM UVM UVM UVM v Windows UVM Windows Windows UVM UVM UVM Windows UVM Windows Windows Copyright IBM Corp. 2004 25

Microsoft 1. Windows 2. Windows UVM Windows 3. Windows UVM Windows Windows 4. Windows UVM UVM 1. IBM Windows > > > IBM 2. IBM 3. Windows Windows 4. 5. 6. Windows UVM Windows v Windows Windows v Windows Windows Windows Windows 26 IBM 5.3

7. UVM 1. IBM Windows > > > IBM 2. IBM 3. UVM Windows 4. 5. 6. 1. IBM Windows > > > IBM 2. IBM 3. Windows Windows Windows 4. 5. 6. 7. 8. IBM Windows 5 27

28 IBM 5.3

6 UVM v Windows UVM UVM v 40 v 47 9, v UVM 30 UVM UVM UVM Windows UVM UVM Windows Windows UVM Windows UVM UVM Windows UVM v UVM Windows UVM Windows Windows v UVM IBM 53 10, v v UVM Windows UVM Windows UVM Windows Cisco LEAP Cisco Aironet Client ACU UVM Windows UVM 1. IBM Windows > > > IBM 2. UVM 3. UVM Windows Copyright IBM Corp. 2004 29

4. 5. 6. 7. UVM 29 Windows UVM UVM IBM UVM UVM 1. IBM Windows > > > IBM 2. UVM Windows 3. 4. 5. 6. 7. UVM UVM UVM UVM 8. 9. 10. UVM UVM UVM UVM 1. UVM Windows 2. UVM 3. UVM 30 IBM 5.3

4. 5. 6. 7. UVM 8. Lotus Notes UVM UVM Lotus Notes Lotus Notes UVM Lotus Notes UVM IBM Lotus Notes Notes Lotus Notes UVM Lotus Notes UVM 1. IBM Windows > > > IBM 2. UVM 3. Lotus Notes Lotus Notes UVM Lotus Notes 4. 5. 6. IBM UVM Lotus Notes 7. Lotus Notes 8. Lotus Notes 9. 10. 11. IBM 12. Lotus Notes 6 UVM 31

Lotus Notes UVM Lotus Notes UVM Lotus Notes UVM Lotus Notes UVM Lotus Notes UVM Lotus Notes UVM 1. Lotus Notes IBM 2. Lotus Notes UVM Lotus Notes Lotus Notes Lotus Notes 1. Lotus Notes 2. Lotus Notes > > IBM 3. UVM 4. IBM 5. 6. Lotus Notes Lotus Notes Notes UVM Notes Lotus Notes Lotus Notes Lotus Notes Lotus Notes Lotus Notes UVM Lotus Notes UVM 1. IBM Windows > > > IBM 2. 32 IBM 5.3

UVM 3. Lotus Notes 4. Lotus Notes Lotus Notes UVM UVM 1. Lotus Notes 2. UVM 32 Lotus Notes UVM 3. Lotus Notes Lotus Notes 4. UVM Lotus Notes UVM 32 Lotus Notes UVM IBM PKCS#11 PKCS#11 Netscape RSA SecurID Netscape Netscape IBM Netscape V4.7x 128 IBM 256 IBM PKCS#11 IBM PKCS#11 IBM PKCS#11 UVM Netscape IBM PKCS#11 1. Netscape > 2. ibmpkcsinstallt.html ibmpkcsinstalls.html C:\Program Files\IBM\Security 3. Netscape ibmpkcsinstallt.html ibmpkcsinstalls.html 4. UVM 5. UVM 6 UVM 33

IBM IBM CSP Netscape Netscape PKCS#11 Netscape Messenger Netscape IBM PKCS#11 UVM UVM UVM UVM UVM IBM 34 IBM 5.3

7 UVM UVM UVM IBM UVM UVM UVM UVM IBM Windows UVM UVM v UVM Windows v UVM Tivoli Access Manager UVM UVM IBM UVM Windows UVM 27 UVM globalpolicy.gvm UVM UVM IBM UVM UVM UVM UVM UVM \Program Files\IBM\Security\UVM_Policy\globalpolicy.gvm UVM UVM UVM Lotus Notes Lotus Notes UVM Lotus Notes UVM Windows UVM UVM UVM Copyright IBM Corp. 2004 35

UVM IBM UVM UVM UVM Lotus Notes Lotus Notes Lotus Notes UVM Lotus Notes Microsoft Outlook Outlook Express Microsoft Outlook Outlook Express IBM IBM Web Netscape PKCS#11 PKCS#11 PKCS#11 C_OpenSession Entrust Entrust PKCS#11 PKCS#11 C_OpenSession Entrust Entrust Entrust PKCS#11 PKCS#11 C_OpenSession UVM IBM UVM 36 IBM 5.3

UVM v v v v v v UVM UVM UVM UVM 1. UVM 2. 3. 4. IBM UVM 5. 6. v v Access Manager Tivoli Access Manager Tivoli Access Manager IBM Tivoli Access Manager 7 UVM 37

Tivoli Access Manager Tivoli Access Manager v 7. UVM IBM UVM UVM UVM IBM UVM \Program Files\IBM\Security\UVM_Policy\remote\globalpolicy.gvm UVM IBM v \IBM\Security\UVM_Policy\remote\globalpolicy.gvm v \IBM\Security\UVM_Policy\remote\globalpolicy.gvm.sig \Program Files \IBM\Security\UVM_Policy\ 38 IBM 5.3

8 IBM IBM 1. IBM Windows > > > IBM 2. console.exe \program files\ibm\security v UVM UVM v v CSS UVM Copyright IBM Corp. 2004 39

47 9, 1. 2. 3. 4. 5. 1. 2. 3. 4. 5. 6. 7. 8. 40 IBM 5.3

9. 10. IBM IBM IBM 45 IBM UVM UVM v v CSS v IBM BIOS v IBM TCPA TCPA IBM v IBM v IBM IBM v IBM 8 41

IBM 1. Windows IBM 2. 3. 4. 5. IBM CSS 1. CSS 2. 3. 4. a. b. 5. 6. IBM 7. 8. 9. 10. 11. IBM 1. Windows IBM 2. CSS 3. 4. IBM 5. 6. 7. 8. 42 IBM 5.3

1. UVM Windows 2. 3. UVM 4. Tivoli Access Manager Tivoli Access Manager UVM Tivoli Access Manager Tivoli Access Manager Tivoli Access Manager Access Manager IBM Tivoli Access Manager Tivoli Access Manager UVM Tivoli Access Manager 1. UVM 2. UVM Windows 3. 4. Tivoli Access Manager TAMCSS.conf C:\TAMCSS\TAMCSS.confTivoli Access Manager 5. 6. Tivoli Access Manager 7. Access Manager 8. IBM Tivoli Access Manager 1. UVM 8 43

2. 3. v v IBM 71 B, 1. IBM 2. IBM 3. 4. 5. Enter Tab > Enter 6. IBM IBM v v v v IBM IBM 44 IBM 5.3

UVM IBM UVM UVM Windows UVM 1. 2. 3. Configuration/Setup Utility BIOS IBM IBM IBM IBM 1. IBM Windows > > > IBM IBM IBM 2. IBM Configuration/Setup Utility BIOS 3. 4. Windows > > > IBM 5. 6. Entrust IBM Entrust Entrust Entrust IBM entrust.ini Entrust entrust.ini entrust.ini Entrust Entrust Entrust IBM 8 45

Entrust 1. IBM Windows > > > IBM 2. UVM 3. Entrust 4. IBM Entrust Entrust 46 IBM 5.3

9 : v UVM v v Web v UVM UVM UVM UVM UVM UVM Windows UVM Windows UVM UVM Ctrl + Alt + Delete UVM UVM Windows 1. Ctrl + Alt + Delete UVM 2. UVM UVM 3. UVM 1. UVM UVM 2. UVM v UVM UVM Copyright IBM Corp. 2004 47

Windows Windows UVM Windows IBM Windows Lotus Notes Lotus Notes Lotus Notes IBM v UVM v v CSS CSS Windows XP Windows XP Windows XP Professional Windows XP Professional v NTFS v Windows NTFS v NTFS Windows XP Professional v UVM v UVM Windows v Windows XP Home Windows XP Home v NTFS v Windows NTFS v NTFS 48 IBM 5.3

1. > > Access IBM > IBM > IBM 2. v UVM UVM Windows UVM Lotus Notes v UVM v 3. Web Web VeriSign Microsoft Microsoft CryptoAPI Outlook Express Outlook Express Outlook Microsoft Microsoft CSP Microsoft IBM IBM CSP IBM IBM 1024 1024 IBM CSP CSP UVM UVM 9 49

Microsoft CSP IBM CSS Microsoft CSP IBM CSP IBM v CA cssdesk v CSS Microsoft 1024 c:\\program files\ibm\security CSS 1. > Access IBM > IBM > CSS IBM CSS 2. 3. CSS Microsoft 4. 5. CSS IBM CSP IBM IBM Microsoft Microsoft Microsoft Microsoft UVM UVM UVM 50 IBM 5.3

UVM 1. > > Access IBM > IBM > IBM 2. UVM 3. UVM 4. UVM 5. 9 51

52 IBM 5.3

10 IBM IBM IBM IBM IBM UVM UVM Windows Windows UVM IBM BIOS ThinkCentre Configuration/Setup Utility v IBM v IBM v IBM Configuration/Setup Utility BIOS 1. 2. Configuration/Setup Utility F1 Configuration/Setup Utility 3. System Security Copyright IBM Corp. 2004 53

4. Administrator Password 5. 6. 7. Change Administrator password Enter Enter 8. Esc BIOS Configuration/Setup Utility BIOS BIOS Configuration/Setup Utility BIOS ThinkPad IBM BIOS Setup Utility v IBM v IBM v ThinkPad 1 1. 2. Setup Utility F1 Setup Utility 3. Password 4. Supervisor Password 5. Enter 6. Enter 7. Continue 8. F10 2 1. 2. To interrupt normal startup, press the blue Access IBM button Access IBM Access IBM Access IBM predesktop 54 IBM 5.3

3. Start setup utility 4. Security 5. Password 6. Supervisor Password 7. Enter 8. Enter 9. Continue 10. F10 BIOS Setup Utility IBM BIOS Setup Utility IBM ThinkCentre IBM IBM v IBM IBM 1. 2. Setup Utility F1 Setup Utility 3. Security 4. IBM TCPA Feature Setup 5. Clear IBM TCPA Security Feature Enter 6. Yes 7. F10 Yes 8. Enter IBM ThinkPad IBM IBM v IBM 10 55

IBM 1. 2. Fn 3. Setup Utility F1 Setup Utility 4. Config 5. IBM Security Chip 6. Clear IBM Security Chip 7. Yes 8. Enter 9. F10 CSS V5.2 V5.2 CSS CSS CSS IBM IBM Internet Explorer Internet Explorer 20 Internet Explorer 20 CSS 20 20 Lotus Notes Lotus Notes Lotus Notes UVM Notes Lotus Notes UVM Lotus Notes Lotus Notes Notes Lotus Notes Notes UVM UVM Notes Notes UVM Notes Lotus Notes 56 IBM 5.3

Notes Notes UVM Notes Notes Lotus Notes UVM UVM Windows IBM Windows IBM UVM Windows IBM UVM Windows CSS CSS Targus Targus atplugin.reg BIOS IBM 5.2 ThinkPad BIOS BIOS BIOS Setup Netscape 7.x Netscape 7.x Netscape 4.x Netscape PKCS#11 PKCS#11 10 57

USB UVM UVM PIN PIN UVM PIN PIN + Windows + Windows XP Windows XP UVM Windows Windows Windows UVM Windows UVM Windows XP UVM Windows UVM UVM Windows Windows Netscape Netscape UVM UVM UVM Netscape IBM Netscape IBM UVM 58 IBM 5.3

Netscape IBM PKCS#11 IBM PKCS#11 Netscape v SHA-1 v MD5 IBM IBM Microsoft Netscape Outlook Express 128 Outlook Express 128 128 Internet Explorer 4.0 5.0 Outlook Express Outlook Express 128 IBM 3DES Outlook Express 128 Netscape Netscape Outlook Express 128 RC2 40RC2 64 RC2 128 RC2 40 Netscape Outlook Express 128 RC2 IBM Outlook Express 128 Microsoft Outlook Express Lotus Notes UVM Notes UVM Notes UVM UVM 1. Notes 2. UVM 3. Notes Lotus Notes UVM 4 4. Lotus Notes UVM Windows XP Windows XP Professional Windows XP Professional v NTFS v Windows NTFS 10 59

v NTFS Windows XP Professional v UVM v UVM Windows v Windows XP Home Windows XP Home v NTFS v Windows NTFS v NTFS Tivoli Access Manager Tivoli Access Manager UVM Access Manager Tivoli Access Manager Tivoli Access Manager UVM UVM Outlook Express Netscape 60 IBM 5.3

v 5.0 IBM BIOS Setup Utility v IBM IBM IBM UVM UVM UVM Windows UVM UVM UVM v UVM v UVM UVM UVM UVM globalpolicy.gvm UVM UVM UVM UVM UVM UVM IBM I/O 10 61

Enter Tab > Enter 1. 2. Enter Tab > Enter Windows XP Professional Windows XP Professional v UVM v UVM Windows v Windows XP Home Windows XP Home v NTFS v Windows NTFS v NTFS Windows XP Professional Windows XP Home ThinkPad ThinkPad UVM ThinkPad 1. F1 IBM BIOS Setup Utility 2. 3. 4. Enter 5. F10 62 IBM 5.3

IBM ThinkPad UVM Microsoft Microsoft Windows Extended Desktop UVM Windows UVM Windows XP UVM Windows UVM Windows Outlook Express Web Outlook Express IBM Outlook Express 128 3DES Outlook Express 128 Internet Explorer 4.0 5.0 3DES 1. Web Web 2. Web Outlook Express Outlook Express Outlook Express Outlook Express Microsoft 10 63

Outlook Express RC2 40RC2 64 RC2 128 Netscape Messenger Outlook Express 128 Outlook Express RC2 40 Outlook Express VeriSign Outlook Express Netscape Internet Explorer 4.0 128 Outlook Express Netscape Outlook Express 128 RC2 40RC2 64 RC2 128 RC2 40 Netscape Microsoft Outlook Express v v Outlook Express Outlook Express Outlook Express Outlook Express Outlook Express Outlook Express Internet Explorer IBM CSP Netscape Netscape 64 IBM 5.3

Web 1. Web Web 2. Web Netscape Messenger IBM RC2 40RC2 64 RC2 128 Netscape Messenger Outlook Express 128 Outlook Express RC2 40 IBM IBM Netscape IBM Netscape IBM Netscape VeriSign Netscape Messenger Netscape Messenger Messenger IBM Netscape Netscape Outlook Express 128 RC2 40RC2 64 RC2 128 RC2 40 Netscape Microsoft Outlook Express Netscape UVM UVM Netscape IBM Netscape UVM Netscape IBM 10 65

Netscape Netscape Netscape Netscape Netscape Netscape IBM PKCS#11 Netscape Netscape UVM UVM UVM UVM UVM VBScript JavaScript VBScript JavaScript Tivoli Access Manager Tivoli Access Manager Tivoli Access Manager UVM PD Tivoli Access Manager Tivoli Access Manager Tivoli Access Manager Tivoli Access Manager runtime Environment IBM Runtime Environment Tivoli Access Manager 66 IBM 5.3

Lotus Notes Lotus Notes Lotus Notes UVM Notes UVM Lotus Notes Notes Notes v Lotus Notes Notes UVM v Notes Notes Notes v Notes Lotus Notes Lotus Notes Notes UVM Notes 3.0 3.0 3.0 3.0 3.0 UVM UVM UVM 10 67

UVM UVM USB UVM USB USB 68 IBM 5.3

A. IBM IBM ERO IBM 256 IBM IBM ERC Copyright IBM Corp. 2004 69

70 IBM 5.3

B. UVM!? % IBM 1 17 2 34 UVM IBM UVM UVM UVM UVM UVM v 6 v v v 61234567xxx 1 1 thisismypassword 2 i am not here 1password Copyright IBM Corp. 2004 71

v v v v password8 UserName UserName x x 3 mypassword mypassword pass word paswor UVM UVM v 184 v 184 UVM 256 UVM UVM UVM UVM TCPA TCPA TCPA 15 1.1 31 2.2 47 4.4 63 8.8 72 IBM 5.3

79 17.6 95 35.2 111 1.2 127 2.3 143 4.7 TCPA IBM 4.7 TCPA 4.7 TCPA TCPA 10 77 32 1 32 v 1. 2. v 1. 2. 3. UVM B. 73

74 IBM 5.3

C. UVM UVM IBM UVM Windows UVM Windows UVM UVM UVM UVM v UVM IBM IBM v UVM Windows UVM Windows v Windows UVM UVM Copyright IBM Corp. 2004 75

76 IBM 5.3

D. IBM IBM IBM IBM IBM IBM IBM IBM IBM IBM Director of Licensing IBM Corporation North Castle Drive Armonk, NY 10504-1785 U.S.A. International Business Machines Corporation IBM (i) (ii) IBM Corporation, Department 80D, P.O. Box 12195, 3039 Cornwallis, Research Triangle Park, NC 27709, U.S.A. IBM IBM IBM IBM SecureWay IBM Tivoli Tivoli Systems Inc. Copyright IBM Corp. 2004 77

Microsoft Windows Windows NT Microsoft Corporation 78 IBM 5.3