Configuring Common Access Card Authentication Solution

Unified Client for Ricoh Smart Operation Panel supports Ricoh Common Access Card (CAC) v4 that has authentication capabilities and prevents unauthorized access to MFPs with AutoStore and Equitrac installed.

A US Department of Defense (DOD) CAC authentication solution provides US federal government customers with the ability to use their exiting ID cards with the solution, increasing user satisfaction, security and productivity.

The CAC authentication solution provides the following benefits:

  • Easy to use turn-key solution

  • Holders of a valid CAC can perform copy, scan, fax, and/or document server functions
  • Card is inserted into CAC reader connected to MFP and PIN is entered
  • Upon successful authentication the multifunction device is unlocked for use

  • Scanning is restricted only to address book users and embedded destinations to prevent anonymous scan-to functions
  • After authentication user is automatically registered in MFP's address book.

For US Government accounts the embedded client can use CAC cards for user authentication when configured with Equitrac. In this instance, Equitrac will operate when Authentication is set to False in the DRS application profile.

The Authentication setting is only visible if a Print Manager is selected.

To use CAC authentication when Equitrac 5.6 or later is configured as the authentication provider:

  1. Install CAC.
  2. Register and configure Ricoh MFP devices using CAC authentication.
  3. Swipe your card and enter your CAC PIN code to log in.

The following Equitrac features are not supported with CAC login: Function Access Control (monochrome and color copy, scan and fax permissions and copy stop enforcement), Release All at login, Release First at login, Billing Codes at login, and Copy Rules (limit access).
CAC does not support Equitrac multi-DCE environment.

Setting Alternate Primary PIN as UPN

Equitrac offers an optional alternate primary PIN that the user can enter instead of the primary PIN. Alternate primary PIN can be used for an additional level of security as it serves as another primary PIN for the user.

Open Equitrac System Manager and go to ConfigurationUsers and click on a user. In Properties of… dialog box, set the Alternate primary PIN as UPN from CAC server.

Configuring and Using DRS for a CAC Device

Selection on the Ricoh SOP device – DRS Web client

  1. Open the http://<DRSIP>:9000/device.
  2. When selecting an Auth Off application in device, a Baseline Installation option is shown..
  3. Make sure you select the Baseline Installation as false.
DRS action steps
  1. Select the device which has CAC on it.
  2. Run action “Full Install”.
You must set Home key to System Home and not Kofax Embedded for Ricoh SOP in CAC environment.