Configuring a client to support Smart Card and certificate login
Client machines require middleware and modifications to browsers to enable the use of Smart Cards and for certificate login. Customers who are already using Smart Cards should not require additional modifications to their client machines.
Before you begin
|
For the most up to date CAC and Certificate instructions, see the following Knowledgebase articles (Support login required): |
About this task
The following are the common client configuration requirements:
-
Installing Smart Card middleware, such as ActivClient (see http://militarycac.com/activclient.htm)
-
Modifying the IE browser (see http://militarycac.com/files/Making_AKO_work_with_Internet_Explorer_color.pdf)
-
Modifying the Firefox browser (see https://militarycac.com/firefox2.htm)
Additional configuration steps include the following:
Steps
-
Disable unnecessary dialog pop-ups when launching the Java client:
-
Open the “Java” control panel.
-
Select the “Advanced” tab.
-
Select “Advanced Security Settings”.
-
Clear the “Use certificates and keys in browser keystore” option.
-
-
Import soft certificates into a user’s personal certificates using the Chrome browser:
-
Navigate to “Advanced Settings”.
-
Select “Manage Certificates”
-
Select the “Personal" certificates tab”.
-
Select “Import…”.
-
Choose the .p12 file.
-
Complete the wizard, making sure to fill in the password field with the password that was used to create the certificate.
Similar steps are required to configure the Internet Explorer and Firefox browsers.
-