"SecureCerts User Manual"
SecureCerts User Manual Page 1 of 8 SecureCerts User Manual AEware International Inc. AEware International Inc. Email: email@example.com http://www.aeware.com SecureCerts User Manual Page 2 of 8 System Introduction SecureCerts module of UKey is mainly to proceed the management of the digital certificate, supports the MS CSP standard, to be applied in the Window Platform. CSP(Cryptograghic Service Porvider) provides the signature and encryption functions based on the Microsoft Windows platform, the application procedure may proceed the applications of encryption and decryption in this function. Installation SecureCerts is an application program based on hardware. Thus when you begin to use SecureCerts module, you must own the hardware (UKey1000) to store the private key or the certificate. The software you got of the SecureCerts (no matter it is downloaded from the website or the disk) contains the file of cspsetup.exe, please double click this file then it will start the installation of SecureCerts. When operate the installation procedure of the SecureLogon, please choose the “Certificates” in the Windows for selecting the modules. Please click the “Next Step” until the installation accomplished. Supported Operation System The operation system SecureCerts supported currently contains: Windows 9X/NT/2000. Installation Instruction The installation process is similar as the normal software installation. In case you need to select the installation catalog and its name, please click “Yes” when it implies the system files renewal before accomplishing installation. Installation Accomplishment After the accomplishment of installation, the system will ask you whether to restart the computer immediately. If you demand SecureCerts to be effective at once, please restart the computer. AEware International Inc. Email: firstname.lastname@example.org http://www.aeware.com SecureCerts User Manual Page 3 of 8 What is digital certificate? Digital certificate is a series of data showing the identities of various parties in network communications. It functions like an identification card. It is issued by an authoritative organization and serves to identify various parties in communication. Usually X.509 International Standard is adopted for the format of the certificate. A strict identity verification system is established by using digital certificates and such code techniques as symmetrical and asymmetrical code system, so that no information is plagiarized by anyone else except the sender and receiver; no information is altered during transmission; the sender can confirm the identity of the receiver by means of the digital certificate; the sender cannot disavow his own information. The installation procedure will create the procedure folder and to create the program in the “Begin” Menu. Installation of UKey1000 Hardware After user installed the software of SecureCerts, user is required to install the hardware driver program of UKey1000, the driving program is under the subdirectory in the folder of installation file. The process of the installation is mainly as follows: 1.To plug the hardware into the USB port of the computer, operation system will clew that there’s new equipment detected. 2. PC requires the user to designate the path of the new equipment’ drive program. 3. User may point to the UKey subdirectory of the installation disk. 4. The operating system will automatically recognize the equipment driver program. 5. Windows processes the copy of the files, accomplishing the installation process. The usage of the SecureCerts After correctly installed SecureCerts, restart the computer, when the Windows operated and entered the desktop, the user may find there’s a lock shap icon in the right down corner of desktop as follows: Please click the icon, it bounces out the menu, among which there’s SecureCerts. Under the SecureCerts option, there’s a sub-option “MS CSP”. To start the “MS CSP Support”, it appears the following window: AEware International Inc. Email: email@example.com http://www.aeware.com SecureCerts User Manual Page 4 of 8 The above two blanks frame will not contain any contents firstly. If your UKey has stored the digital certificate, correctly installed and connected to the computer, you may click the “Refresh Appearance” option in the menu to inspect the private key and digital certificate information stored in UKey. (For UKey may contain multi private key and digital certificate information, to read all this info requires a few seconds or more time, please take patience). The data will appear in the above blank frame. Pay Attention: The first time to use SecureCerts, the user may configure the PIN, to proceed the PIN management, to select the option of “Amend the User PIN”, you may revise the PIN. The “Container” name in the up part of the above blank frame refers to the name used for storing the private key or the digital certificate unit’s name. The container may include the private key and the digital certificate. The below part of the blank frame displays the detailed info of the digital certificate, this info may contain the certificate version, applied time, authorization organization, series number, identity information and encryption arithmetic for the public key, etc. Such as follows: AEware International Inc. Email: firstname.lastname@example.org http://www.aeware.com SecureCerts User Manual Page 5 of 8 Once UKey has been correctly installed and connected to the computer, the status bar in the down part of desktop will appear the rest space of the Logon Key, in order to insure you conveniently arrange and use the space. If your logon Key has contained multi-digital certificate, they almost fill up the space of Ukey, yet you still need to apply for the new certificate, we suggest you to export the PKC which is corresponding to the un-often used certificate, in order to get the relevant space. In this way it will not delete the certificate itself and you may import it again whenever you need it. The management of the files Use the option under the “File” menu; it may proceed the management of the certificate files. “Online apply for certificate”: If your computer has been connected to the Internet, you may click directly the “Online application” under the “Certificate Menu”, to connect to the “Online certificate application” web page that set by our company. Here, you may select at will for the digital certificate provider that listed by us and apply for the digital certificate service online. “Import the certificate”: To import the digital certificate into the logon UKey from the computer. AEware International Inc. Email: email@example.com http://www.aeware.com SecureCerts User Manual Page 6 of 8 “Export the certificate”: To export the certificate information and store it in computer, you may inspect the exported certificate through the browser. The Management of the UKey The options under the “UKey” menu may used for the management for the digital certificate by the private key stored in the UKey, including the inspection, registration, deletion, import, export and refresh, etc. “Refreshingly display”: To read the digital certificate and the private Key information that stored in the Logon Key. “Inspect Certificate”: Choose container number that contains the certificate, read the detailed information of the certificate, and display in the blank in the down part. “Register Certificate”: To register all digital certificates stored in the UKey to the computer system. After registration you may directly use your digital certificate in your computer. This procedure is similar as the “Import PKC”, but it realizes the process of importing the whole How Do Microsoft Internet Explorer Users View Digital Certificates? 1) On the menu of Internet Explorer menu, click “Internet Options” of the “Tools” menu; 2) Select “Contents” tab and then click “Certificate” to view the list of current certificates that you trust; 3) Click “Individual” tab to view the individual digital certificate you have applied for; select the individual digital certificate you want to view and then click “View” to view detailed information about the certificate. certificate. “Delete Certificate”: Delete the certificate information that stored in this container, but the container is still remained. “Delete Private Key”: To delete the private key together with the container that loading it. Option Configurations The option menu contains four options: “Revise User PIN”, “Revise Master PIN”, “Default CSP”, and “Automatically Operation”. “Revise User PIN” and “Revise Master PIN” ‘s function is used for setting/ revising the User AEware International Inc. Email: firstname.lastname@example.org http://www.aeware.com SecureCerts User Manual Page 7 of 8 PIN and Master PIN. Please pay attention; if the Key has been set the Master PIN before, it requires validating the former Master PIN. If the Key has not been stored any certificate information before, the revision of the PIN is actually the initialization of the digital certificate storage area in the UKey, the input PIN will be directly stored in the Key, to identify the user’s identity next time. The function of PIN is to validate the user identity that owns the UKey, this identity validation procedure is very important for the authenticity of the encryption/signature. After the correct setting of the PIN, whenever you need to read the information of the Logon Key, system will proceed the validity of the PIN, you may check the “Store the PIN, unnecessary to input the next time” option, the system will store the PIN into the storage, unnecessary to input whenever next time use. “Default CSP” option may be used to select iSecureX CSP or the Microsoft CSP as the system default valuation. “Automatically Operation”: after select this option, MS CSP toolbox will automatically start when Windows start, and also detect the plug in and out of the logon Key. After plug in the Logon Key, MS CSP will automatically import all the digital certificate information in the Key into the Windows system; it’s for the encryption and signature operation afterwards. Exit the MS CSP toolbox In case you want to exit the MS CSP toolbox, you must click the “Exit” in the “File” menu to accomplish (In consideration of the user would be mistakenly click the “x” in the right-up corner of the windows and cause the damage of the certificate under using, we minimize the “x” in the procedure, which is equal to the “-“.) AEware International Inc. Email: email@example.com http://www.aeware.com SecureCerts User Manual Page 8 of 8 System Un-installation Click the “Begin Procedure UKey2003 Uninstall System”, to uninstall all the SecureLogon modules, including the SecureCerts module. After accomplished un-installation, it requires to restart the computer. AEware International Inc. Tel: 86-755-26507303 Fax: 86-755-26509997 Web: www.AEware.com www.ukey.net E-mail: mail@AEware.com AEware International Inc. Email: firstname.lastname@example.org http://www.aeware.com