Setting up the Installed Client
Scenario
You want to set up an Installed Client. For launching the local Installed Client on Server no special communication security settings are required.
This scenario describes steps for loggin on to the Installed Client on the setup type – Client or FEP by setting up secured Client/Server connection. For securing the Client/Server connection in this workflow the Windows store based security certificates are used.
For background information, see the reference section.
Prerequisites
- For working with SMC, the logged in user on the Server/Client/FEP station has Administrator rights.
- You have acquired the Client/FEP machine’s logged in user’s name in order to share the Server project with that user.
In workgroup environment, for working with Client/Server setup, the user with which want to share the Server project, must also be present on the Client/FEP machine and have the same password on both the machines.
On Server
- The Setup type – Server is installed.
- SMC is launched and a project is restored or created and an HDB is linked to it.
- The root, host certificates used for securing the Client/Server communication are imported in the appropriate Windows Certificate store on Server station and set as default.
- The root certificate (.cer file) is imported in the Trusted Root Certificate Authorities (TRCA) store.
- The Server root certificate is the source of all host certificates used for communication. Therefore, it must be the same for all host certificates and must be available on the Server and all its clients.
- The Server and Client/FEP host certificate must be generated using the same Server root certificate.
- The subject name of the Server or Client/FEP host certificates must be different than subject name of the Server or Client certificate.
- The Server host certificate (.pfx file) is imported in the Personal store.
- The Client/FEP host certificate (.cer file and .pfx file) is created and available on the disk.
- The system key is exported from the Windows Key store to the configured location on Server.
On Client/FEP
- The Server root certificate (.cer file) and the Client/FEP host certificate (.pfx file) is available on the disk.
You can either copy the root and the client or FEP host files to a removable drive that you can then use at the client or FEP station to import the certificates, or, you can use the network access between the Server and the Client/FEP to import the root and Client/FEP host into the Client/FEP station. - You have installed the Setup type – Client and SMC is launched.
- The security certificates are imported in the appropriate Windows Certificate store and set as default.
- The root certificate (.cer file) is imported in the Trusted Root Certificate Authorities (TRCA) store.
- The Client/FEP host certificate (.pfx file) is imported in the Personal store.
The communication certificates should be specific. Therefore, it is recommended to use different host certificates for Client and Server. - On the FEP the same Windows key file as that on the Server, to which it is connected, is imported in the Windows Key store.
Overview