Black Box ET0010A User Manual

Page of 352
Using a Common Access Card
EncrypTight User Guide
297
NOTE
When Common Access Card Authentication is enabled, users of the EncrypTight software can log in 
without using passwords if the deployment includes only ETEPs running software version 1.6 or later. 
However, passwords are still required when administrative users log into the ETEPs using the serial port 
and through SSH. 
Handling Common Name Lookup Failures
When Common Access Card Authentication is enabled, the user accounts for all users who attempt to log 
into EncrypTight must be configured with common names that match the identity certificate used on their 
CAC. If the common names do not match or if the user account does not include a common name, by 
default EncrypTight prompts for a valid user name and password. 
If this failsafe mechanism is deactivated, you can be locked out of the system and unable to make 
changes or troubleshoot the system. However, to provide even greater security you can disable this 
backup user ID and password prompt.
To specify how to handle common name failures:
1 In EncrypTight, choose Edit > Preferences.
2 Expand the ETEMS item and click Login.
3 Click On CAC CN Failure, enable User ID/Password authentication to enable or disable the 
option.
4 Click Apply and click OK.