09.04.2013 Views

DoD CAC Middleware Requirements - IDManagement.gov

DoD CAC Middleware Requirements - IDManagement.gov

DoD CAC Middleware Requirements - IDManagement.gov

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Appendix A<br />

<strong>Middleware</strong> Configurable Options Summary<br />

Option Default Privilege Level Default Settings<br />

Certificate Auto<br />

Registration<br />

Admin On<br />

Certificate Removal on<br />

Logoff<br />

Admin Off<br />

Certificate Removal on Admin Off<br />

Card Removal<br />

CAM Allow Admin On<br />

CAM Time Out Setting Admin 15<br />

CAM Decrypt (optional) Admin On<br />

CAM Sign (optional) Admin Off<br />

CAM Other (optional) Admin On<br />

Figure 1 Configurable Options<br />

CSP Key<br />

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Cryptography\Defaults\Provider]\<<br />

CSP NAME><br />

Should be replaced with the provider name<br />

Key Values Type Setting Default Setting<br />

Image Path REG_SZ N/A<br />

Type REG_DWORD N/A<br />

Signature REG_BINARY N/A<br />

SigInFile* REG_DWORD 0x00000000 0x00000000<br />

Setting Description<br />

The Image path value is a string value and is the name or fully<br />

qualified path of the CSP DLL<br />

3-digit CSP type as specified in the Security section of the<br />

Microsoft Platform SDK<br />

* The digital signature of the CSP DLL<br />

SigInFile* Optional replacement for on Windows 2000 and<br />

XP platforms.<br />

This value must be 0x00000000.<br />

* Only one of the “Signature” or “SigInFile” entries is required.<br />

Example<br />

UNCLASSIFIED 25

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!