Communication encryption (SSL/TLS)

You can encrypt the communication between your PC and this machine. The communication is encrypted with SSL/TLS in the following cases.

A certificate is pre-installed on this machine to enable the communication using HTTPS.


Creating a certificate

You can use a certificate when sending data to this machine connected to a network. This section describes how to create a certificate from the web page.
The following two types of certificates can be created.

  • Self-signed certificate
    This certificate is issued by this machine.
  • Certificate issued by certificate authority
    This certificate is signed and issued by an external certificate authority for CSR (Certificate Signing Request) created by this machine.

  • Before creating a certificate, make sure that the certificate already installed has been deleted.
  • If an IP address is set in [Common Name] of the certificate, the certificate will be invalidated when the printer IP Address is changed after the certificate is created. Please create a certificate again.


  1. Open the web page of this machine.

  2. Log in as an administrator.

  3. Select [Admin Setup].
  4. Select [Network] - [Security] - [SSL/TLS].

  5. Click [Delete Certificate] to delete the certificate already installed.

    • If the certificate has been removed, proceed to Step 6.
  6. Configure the settings following the on-screen instructions.
  7.  Confirm the settings, and click [OK].
    • For a self-signed certificate, follow on-screen instructions to close the web page, and proceed to "Enabling encryption settings".
    • To obtain a certificate issued by a certificate authority, go to Step 7.
  8. Send the CSR to the certificate authority by following on-screen instructions.
  9. Click [OK].
  10. Install the certificate from the certificate authority by following on-screen instructions.
  11. Click [Submit].
    See "Enabling encryption settings".


Importing a certificate and private key

This section describes how to import the certificate and private key from the web page.
You can also import the certificate and private key to use the certificate issued by an external certificate authority.

  1. Open the web page of this machine.

  2. Log in as an administrator.

  3. Select [Admin Setup].
  4. Select [Network] - [Security] - [SSL/TLS].
  5. Select [Using Certificate and Private Key after imported] to import the certificate.

    •  You can import a certificate in PKCS#12 format.

    See "Enabling encryption settings".


Enabling encryption settings

You can enable the encryption settings after creating a certificate. This section describes how to enable the encryption from the web page.
When the encryption is enabled, it will be encrypted from the communication immediately after changing the setting from the web page.

  1. Open the web page of this machine.

  2. Log in as an administrator.

  3. Select [Admin Setup].
  4. Select [Network] - [Security] - [SSL/TLS].
  5.  Select [Enable] for the protocol you want to apply the encryption to.
  6. Click [Submit].


Exporting a certificate

This section describes how to export a certificate from the web page.
Depending on the SSL/TLS communication function, your PC may require to trust the machine's certificate.
Import the exported certificate of the machine into the PC's trusted certificate store in order for the PC to trust the machine.

  1. Open the web page of this machine.

  2. Log in as an administrator.

  3. Select [Admin Setup].
  4. Select [Network] - [Security] - [SSL/TLS].
  5. Select [Export Certificate] to export the certificate.

    •  The certificate is exported in the PEM format.