<Device Management>

Specify the settings for managing the hardware and optional equipment.
 
For information on the items ("A", "B", "C", and "No") in the "Import All Function" column, see Import All Function.
Item marked with an asterisk (*)
Only appears if you have the option installed.

<Device Information Settings>

 (Settings/Register)  <Management Settings>  <Device Management>
Enter the name and the installation location to identify the machine.
Item
Setting Description
DeviceAdmin
NetworkAdmin
Can be set in Remote UI
Import All Function
Name of Item When Exporting with the Remote UI
<Device Information Settings>
<Device Name>
No
No
Yes
A
Settings/Registration Basic Information
<Location>
No
No
Yes
A
Settings/Registration Basic Information

<Import/Export from Addr. Book Management Software>

 (Settings/Register)  <Management Settings>  <Device Management>
Set whether to import or access the address books of address book management software.
Item
Setting Description
DeviceAdmin
NetworkAdmin
Can be set in Remote UI
Import All Function
Name of Item When Exporting with the Remote UI
<Import/Export from Addr. Book Management Software>
<On>, <Off>
No
No
No
C
Settings/Registration Basic Information
When <On> is selected:
<Use User Authentication When Importing>: <On>, <Off>
When user authentication is performed, setting <Use User Authentication When Importing> to <On> enables only address books for which user authentication has been performed to be imported.

<Limited Functions Mode>

 (Settings/Register)  <Management Settings>  <Device Management>
Specify the settings used to restrict the use of optional equipment.

<Confirm Device Signature Certificate>

 (Settings/Register)  <Management Settings>  <Device Management>
Check the detailed settings of a device signature certificate. You can also check whether the certificate is valid.
Item
Setting Description
DeviceAdmin
NetworkAdmin
Can be set in Remote UI
Import All Function
Name of Item When Exporting with the Remote UI
<Confirm Device Signature Certificate>
<Version>, <Serial Number>, <Signature Algorithm>, <Issued To>, <Validity Start Date>, <Validity End Date>, <Issuer>, <Public Key>, <Certificate Thumbprint>, <Issued To (Altn. Name)>, <Verify Certificate>
Yes
Yes
Yes
No
-

<Confirm User Signature Certificate> *

 (Settings/Register)  <Management Settings>  <Device Management>
Check the detailed settings of a user signature certificate available for the logged-in user. You can also check whether the certificate is valid.
Item
Setting Description
DeviceAdmin
NetworkAdmin
Can be set in Remote UI
Import All Function
Name of Item When Exporting with the Remote UI
<Confirm User Signature Certificate>
<Version>, <Serial Number>, <Signature Algorithm>, <Issued To>, <Validity Start Date>, <Validity End Date>, <Issuer>, <Public Key>, <Certificate Thumbprint>, <Issued To (Altn. Name)>, <Verify Certificate>
Yes
Yes
Yes
No
-

<Certificate Settings>

 (Settings/Register)  <Management Settings>  <Device Management>
You can manage the keys/certificates, CA certificates, or certification revocation list (CRL) used in the machine. You can also set the Online Certificate Status Protocol (OCSP).
Generating the Key and Certificate for Network Communication
Generating a Device Signature Certificate
Registering a User Signature Certificate
Generating a Key and Certificate Signing Request (CSR)
Configuring the Expiration Check Method for Received Certificates
Item
Setting Description
DeviceAdmin
NetworkAdmin
Can be set in Remote UI
Import All Function
Name of Item When Exporting with the Remote UI
<Generate Key>
<Generate Network Communication Key>
<Key Name>
Yes
Yes
Yes
No
-
<Signature Algorithm>: <SHA256>, <SHA384>, <SHA512>
Yes
Yes
Yes
No
-
<Key Algorithm>: <RSA>, <ECDSA>
Yes
Yes
Yes
No
-
When <RSA> is selected: <Key Length (bit)>: <512>, <1024>, <2048>, <4096>
Yes
Yes
Yes
No
-
When <ECDSA> is selected
<Key Type>: <P256>, <P384>, <P521>
Yes
Yes
Yes
No
-
<Validity Start Date>: Date, Month, Year (01/01/2000 - 31/12/2037)
Yes
Yes
Yes
No
-
<Validity End Date>: Date, Month, Year (01/01/2000 - 31/12/2037)
Yes
Yes
Yes
No
-
<Country/Region>: Country/Region name and code
Yes
Yes
Yes
No
-
<State>
Yes
Yes
Yes
No
-
<City>
Yes
Yes
Yes
No
-
<Organization>
Yes
Yes
Yes
No
-
<Organization Unit>
Yes
Yes
Yes
No
-
<Common Name> (IP address of the machine or FQDN (41 characters maximum))
Yes
Yes
Yes
No
-
<Issued To (Altn. Name)> (<Do Not Set>, <IP Address>, <Domain Name>)
Yes
Yes
Yes
No
-
<Generate/Update Device Signature Key>
<Yes>, <No>
Yes
Yes
Yes
C
Key Settings
<Generate/Update Key for Access Control>
<Yes>, <No>
Yes
Yes
Yes
No
-
<Key and Certificate List>
<Key and Certificate List for Users>*1
<Certificate Details>: (<Version>, <Serial Number>, <Signature Algorithm>, <Issued To>, <Validity Start Date>, <Validity End Date>, <Issuer>, <Public Key>, <Certificate Thumbprint>, <Issued To (Altn. Name)>, <Verify Certificate>)
Yes
Yes
Yes
C*2*3
Certificate/Certificate Revocation List (CRL) Settings
<Delete>
Yes
Yes
Yes
No
-
<Key and Certificate List for This Device>*1
<Certificate Details>: (<Version>, <Serial Number>, <Signature Algorithm>, <Issued To>, <Validity Start Date>, <Validity End Date>, <Issuer>, <Public Key>, <Certificate Thumbprint>, <Issued To (Altn. Name)>, <Verify Certificate>)
Yes
Yes
Yes
C*2*3
Certificate/Certificate Revocation List (CRL) Settings
<Delete>
Yes
Yes
Yes
No
-
<Display Use Location> (Key and Certificate)
Yes
Yes
Yes
C
Certificate/Certificate Revocation List (CRL) Settings
<CA Certificate List>
<Certificate Details>: (<Version>, <Serial Number>, <Signature Algorithm>, <Issued To>, <Validity Start Date>, <Validity End Date>, <Issuer>, <Public Key>, <Certificate Thumbprint>, <Issued To (Altn. Name)>, <Verify Certificate>)
Yes
Yes
Yes
C*2
Certificate/Certificate Revocation List (CRL) Settings
<Delete>
Yes
Yes
Yes
No
-
<Certificate Revocation List (CRL)>
<CRL Details>: <Version>, <Signature Algorithm>, <Valid From>, <Next Update>, <Issuer>, <Serial No. List>
Yes
Yes
Yes
C*2
Certificate/Certificate Revocation List (CRL) Settings
<Delete>
Yes
Yes
Yes
No
-
<Register Key and Certificate>
<Register>
Yes
Yes
Yes
No
-
<Delete>
Yes
Yes
Yes
No
-
<Register CA Certificate>
<Register>
Yes
Yes
Yes
No
-
<Delete>
Yes
Yes
Yes
No
-
<OCSP (Online Certificate Status Protocol) Settings>
<Use OCSP (Online Certificate Status Protocol)>: <On>, <Off>
When <On> is selected:
<Certificate Verification Level>:
<Enable Unverified Certificates>: <On>, <Off>
<OCSP Responder Settings>:
<URL>: <Retrieve from Certificate>, <Custom>, <Retrieve from Cert./Custom>
<Custom URL>
<Communication Timeout>: 1 to 3 to 30 sec.
Yes
Yes
Yes
C
Settings/Registration Basic Information
*1 Indicates items that appear only when the appropriate optional equipment is available for use.
*2 Supports only algorithms that can be imported from the Remote UI.
*3 Keys and certificates are exported in the PKCS#12 format.

<Display Job Status Before Authentication>

 (Settings/Register)  <Management Settings>  <Device Management>
Select whether to restrict access to the <Status Monitor> screen when using a login service.
Item
Setting Description
DeviceAdmin
NetworkAdmin
Can be set in Remote UI
Import All Function
Name of Item When Exporting with the Remote UI
<Display Job Status Before Authentication>
<On>, <Off>
No
No
Yes
C
Settings/Registration Basic Information

<Restrict Access to Other User Jobs>

 (Settings/Register)  <Management Settings>  <Device Management>
Select whether to restrict users from performing operations on the jobs of other users on the <Status Monitor> screen when User Authentication is used.
Item
Setting Description
DeviceAdmin
NetworkAdmin
Can be set in Remote UI
Import All Function
Name of Item When Exporting with the Remote UI
<Restrict Access to Other User Jobs>
<Copy/Print>: <On>, <Off>
<Send>: <On>, <Off>
<Receive>: <On>, <Off>
<Store>: <On>, <Off>
No
No
Yes
C
Settings/Registration Basic Information
If you change <Login Screen Display Settings>, this setting may be set to <On>. For more information, see Specifying When to Display the Login Screen.

<Display Job Log>

 (Settings/Register)  <Management Settings>  <Device Management>
Select whether to display job logs on the <Status Monitor> screen. You can also select whether to allow device management software to retrieve job logs from the machine. Basic Screens on the Touch Panel Display
Item
Setting Description
DeviceAdmin
NetworkAdmin
Can be set in Remote UI
Import All Function
Name of Item When Exporting with the Remote UI
<Display Job Log>
<On>, <Off>
No
No
Yes
C
Settings/Registration Basic Information
When <Off> is selected:
<Retrieve Job Log with Management Software>: <Allow>, <Do Not Allow>
No
No
Yes
C
Settings/Registration Basic Information

<Save Audit Log>

 (Settings/Register)  <Management Settings>  <Device Management>
Select whether to start log recording. Starting Log Recording
Item
Setting Description
DeviceAdmin
NetworkAdmin
Can be set in Remote UI
Import All Function
Name of Item When Exporting with the Remote UI
<Save Audit Log>
<On>, <Off>
No
No
Yes
C
Settings/Registration Basic Information
If this is set to <On>, the <Adjust Time> setting cannot be used.
For information on the types of logs, see System Specifications.

<Retrieve Network Authentication Log>

 (Settings/Register)  <Management Settings>  <Device Management>
Select whether to start log recording for authentication performed when the machine is accessed via the network, such as when printing from a computer or accessing the Advanced Box.
Item
Setting Description
DeviceAdmin
NetworkAdmin
Can be set in Remote UI
Import All Function
Name of Item When Exporting with the Remote UI
<Retrieve Network Authentication Log>
<On>, <Off>
No
No
Yes
C
Settings/Registration Basic Information

<Store Key Operation Log>

 (Settings/Register)  <Management Settings>  <Device Management>
Select whether to save a log of the key operations performed by users. By analyzing the stored logs, you can survey how the machine is being used.
Item
Setting Description
DeviceAdmin
NetworkAdmin
Can be set in Remote UI
Import All Function
Name of Item When Exporting with the Remote UI
<Store Key Operation Log>
<On>, <Off>
No
No
Yes
C
Settings/Registration Basic Information
When the log is output, PINs, passwords, and information obfuscated by the settings for <Restrict Access to Other User Jobs>, etc., are output as masked characters. Therefore, confidential information cannot be leaked externally.
For information on interpreting and outputting saved logs, contact your dealer or service representative.

<Restrict Service Representative Access>

 (Settings/Register)  <Management Settings>  <Device Management>
You can set the machine to restrict changes in user information or security-related settings when the machine is inspected or repaired by your dealer or service representative.
Item
Setting Description
DeviceAdmin
NetworkAdmin
Can be set in Remote UI
Import All Function
Name of Item When Exporting with the Remote UI
<Restrict Service Representative Access>
<On>, <Off (Auth. Needed)>, <Off>
No
No
Yes
C
Settings/Registration Basic Information
Even when this is not set to <On>, you can check the audit log for past operations if the service representative has changed user information or security-related settings.

<Synchronize Custom Settings (Client)>

 (Settings/Register)  <Management Settings>  <Device Management>
You can synchronize the personalized data of multiple Canon multifunction printers on a network. Even for the server machine, it is necessary to enable this setting if you wish to operate the machine as the client machine. Starting Setting Synchronization
Item
Setting Description
DeviceAdmin
NetworkAdmin
Can be set in Remote UI
Import All Function
Name of Item When Exporting with the Remote UI
<Synchronize Custom Settings (Client)>
Before synchronizing: <Enable>, <Pause>
After synchronizing: <Disable>, <Resume>
No
No
Yes
No
-

<Manage Personal Settings>

 (Settings/Register)  <Management Settings>  <Device Management>
Specify the preferences (Personal Settings) for each user.

<Prohibit Initialization of Administrator Password>

 (Settings/Register)  <Management Settings>  <Device Management>
Specify whether to restrict operations of <Initialize Admin. Password>.
Item
Setting Description
DeviceAdmin
NetworkAdmin
Can be set in Remote UI
Import All Function
Name of Item When Exporting with the Remote UI
<Prohibit Initialization of Administrator Password>
<On>, <Off>
No
No
No
No
-
For information on using <Initialize Admin. Password>, see Logging in as an Administrator.

<Restrict Special Mode Operations>

 (Settings/Register)  <Management Settings>  <Device Management>
Select whether to restrict use of Special Mode, which is provided for the purpose of maintenance by service representatives.
Item
Setting Description
DeviceAdmin
NetworkAdmin
Can be set in Remote UI
Import All Function
Name of Item When Exporting with the Remote UI
<Restrict Special Mode Operations>
<On>, <Off>
No
No
No
No
-
A9AU-0L8