Configuring Fuji Xerox XCP ApeosPort VII

This manual was created based on Fuji Xerox ApeosPort C2570 and should be applicable to most Fuji Xerox ApeosPort MFDs, although slight differences may occur.


Requirements

  1. Device has to support the Dispatcher Paragon Embedded Terminal, supported devices are listed on the Partner Portal in the Hardware Compatibility List (HCL).

  2. Device has to support eXtensible Customizing Platform (XCP) versions 1.2+ (for YSoft Terminal Application - 2nd Gen. is required version 1.4+).

  3. External Access Kit (Web Browser, EBW v4) is installed (Should be done by Fuji Xerox service engineer).

  4. Proper NVM is set in service mode (Should be done by Fuji Xerox service engineer).

  5. If you are planning on using Elatec TWN4 reader, make sure the reader has Keyboard standard firmware.

General notes

  • During MFD configuration, MFD sometimes requires reboot. When prompted for reboot, follow the instruction displayed either on web browser or on MFD operation panel.

  • Make sure that External Access Kit is installed and configured at the MFD.

General configuration

General settings

Login to MFD as a system Administrator (Default credential is 11111) and go to Device.

images/download/attachments/284929702/AP7-AdminHome-version-1-modificationdate-1630648012667-api-v2.JPG

Configure date and time according to the server running Dispatcher Paragon

Go to Device > System Settings > System Clock / Timers

  • Time Zone

  • Date

  • Time

Set these options in the aforementioned order, because the Time Zone setting has effect on the Time setting.

images/download/attachments/284929702/20210601_105110-version-1-modificationdate-1630648012250-api-v2.jpg

Configure NTP

This is optional

Go to Device > System Settings > System Clock / Timers

  • NTP time synchronization: On

  • NTP server address

images/download/attachments/284929702/image2021-6-1_11-2-0-version-1-modificationdate-1630648012283-api-v2.png

Configure waiting time to release print job

Go to Device > System Settings > System Clock / Timers

  • Auto Print: 1 Seconds

images/download/attachments/284929702/image2021-6-1_11-3-0-version-1-modificationdate-1630648012327-api-v2.png

Security settings

Administrator user ID and password

Access to MFD at http://MFP_IP_Address using Web Browser

Following screen will be displayed. Then click Log In. Authentication dialog pops up. Type in admin credentials. (Default credential is username: 11111, password: x-admin.)

images/download/attachments/284929702/image2021-5-31_14-22-47-version-1-modificationdate-1630648012393-api-v2.png

Go to Administrator > Profile.

images/download/attachments/284929702/Admin1-version-1-modificationdate-1630648012400-api-v2.png

Press Edit button for User Details to change and insert new user ID name for Administrator.

images/download/attachments/284929702/Admin3-version-1-modificationdate-1630648012410-api-v2.PNG

Press Change Password button and insert new administrator password.

images/download/attachments/284929702/Admin2-version-1-modificationdate-1630648012423-api-v2.png

Log in as Admin user for next steps.

Machine Digital Certificate

Certificate is by default installed. It is not necessary to generate one unless otherwise you want.

Go to System > Security > Certificate Settings

images/download/attachments/284929702/image2021-6-2_10-37-29-version-1-modificationdate-1630648012710-api-v2.png

images/download/attachments/284929702/image2021-6-2_10-39-57-version-1-modificationdate-1630648012720-api-v2.png

SSL/TLS

Go to System > Security > SSL/TLS settings

By default, ApeosPort has TLS 1.2 enabled. ApeosPort supports TLS1.3 as the image below, but SafeQ does not support it yet.

To enable the Verify Remote Server Certificate option on MFD, the Terminal Server certificate has to be manually uploaded to Trusted CA Root Certificates on MFD (Security - Certificates).
Manual certificate upload might not be supported on all devices.

images/download/attachments/284929702/image2021-6-2_10-43-3-version-1-modificationdate-1630648012730-api-v2.png

Network settings

Configure static IPv4 address

Go to Network > Ethernet

images/download/attachments/284929702/image2021-6-2_12-4-39-version-1-modificationdate-1630648012793-api-v2.png

Edit connected Ethernet, set IP Address Resolution to STATIC and fill all required fields according to your network and save.

images/download/attachments/284929702/image2021-6-2_12-6-45-version-1-modificationdate-1630648012823-api-v2.png

images/download/attachments/284929702/image2021-6-2_12-9-21-version-1-modificationdate-1630648012833-api-v2.png

Protocol settings

Go to Network and Verify protocols you would need are enabled.

images/download/attachments/284929702/image2021-6-2_10-49-47-version-1-modificationdate-1630648012740-api-v2.png

HTTP/S

Check that Port (HTTP/HTTPS) is set to Enable All. Can be changed to Enable HTTPS Only which disables the HTTP port.

images/download/attachments/284929702/image2021-6-1_12-36-47-version-1-modificationdate-1630648012447-api-v2.png

SOAP

If Scan workflow should upload Scan using SwA (SOAP with Attachments) , SOAP should be enabled.

images/download/attachments/284929702/image2021-6-1_12-38-42-version-1-modificationdate-1630648012453-api-v2.png

FTP Client

If Scan workflow should upload Scan using FTP protocol, FTP should be enabled.

images/download/attachments/284929702/image2021-6-2_10-51-50-version-1-modificationdate-1630648012750-api-v2.png

LPD

To receive print jobs via LPR, LPD should be enabled.

images/download/attachments/284929702/image2021-6-2_10-52-46-version-1-modificationdate-1630648012760-api-v2.png

IPP

To receive print jobs via IPP/IPPS, IPP should be enabled.

images/download/attachments/284929702/image2021-6-2_10-54-3-version-1-modificationdate-1630648012770-api-v2.png

Port 9100

To receive print jobs via TCP/IP RAW, Port 9100 should be enabled.

images/download/attachments/284929702/image2021-6-2_10-56-19-version-1-modificationdate-1630648012783-api-v2.png

Port 9100 needs to be disabled only for improving security. You need to enable this port when performing a firmware upgrade.

SNMP v3

Click on SNMP v3.

images/download/attachments/284929702/image2021-6-1_12-40-24-version-1-modificationdate-1630648012533-api-v2.png

Enable SNMP v3 and Allow Write. Then enable System Administrator Account and fill Authentication Password and Encryption password used in your organization.

images/download/attachments/284929702/image2021-6-1_12-46-58-version-1-modificationdate-1630648012547-api-v2.png

The same Authentication Password and Encryption password have to be used in device configuration in Dispatcher Paragon .

Plug-in settings

Go to System > Plug-in Settings

Enable Embedded Plug-ins

images/download/attachments/284929702/image2021-5-31_15-13-13-version-1-modificationdate-1630648012610-api-v2.png

Disable Signature Verification when Adding/Updating (Default enabled)

Disabling Signature Verification when Adding/Updating is important, or XCP terminal installation fails.

images/download/attachments/284929702/image2021-5-31_15-13-39-version-1-modificationdate-1630648012620-api-v2.png

Card reader settings

Enable Card Reader support

Go to Permissions > Authentication > Advanced Settings

images/download/attachments/284929702/image2021-6-7_14-59-50-version-1-modificationdate-1630648013003-api-v2.png

images/download/attachments/284929702/image2021-6-7_15-0-42-version-1-modificationdate-1630648013013-api-v2.png

If you are planning on using authentication with card, set the following property to On, otherwise set it to Off.

Set Use of Smart Card to On,

Click on Save.

images/download/attachments/284929702/image2021-6-7_15-2-23-version-1-modificationdate-1630648013037-api-v2.png


Do not enable Use of Smart Card when Card Reader is not connected or you will not be using authentication with card.

Scan related settings

Change Scan Filename Format (only required for YSoft Terminal Aplication - Generation 1 Embedded Terminal)

In order to use scan workflow feature, perform following steps:

Go to App > Scan

images/download/attachments/284929702/image2021-6-2_14-17-2-version-1-modificationdate-1630648012847-api-v2.png

images/download/attachments/284929702/image2021-6-2_14-17-51-version-1-modificationdate-1630648012857-api-v2.png

Change Filename Format option to img-MDDHHMMSS.

Click Save.

images/download/attachments/284929702/image2021-6-2_14-50-15-version-1-modificationdate-1630648012970-api-v2.png

images/download/attachments/284929702/image2021-6-2_14-20-22-version-1-modificationdate-1630648012907-api-v2.png

Enable auto completion of email address in native scanning application

Go to App > Email

images/download/attachments/284929702/image2021-6-2_14-38-45-version-1-modificationdate-1630648012927-api-v2.png

images/download/attachments/284929702/image2021-6-2_14-41-45-version-1-modificationdate-1630648012940-api-v2.png

Turn On Add Me option and choose Add to "To" or "Cc".

Click Save.

images/download/attachments/284929702/image2021-6-2_14-48-43-version-1-modificationdate-1630648012957-api-v2.png

images/download/attachments/284929702/image2021-6-2_14-47-33-version-1-modificationdate-1630648012950-api-v2.png

You may optionally configure "[From ] Field".

Go to [From ] Field

images/download/attachments/284929702/image2021-6-2_14-57-5-version-1-modificationdate-1630648012983-api-v2.png

Change Edit [From] Field option to Logged-In Users Only.

Click Save.

images/download/attachments/284929702/image2021-6-2_14-57-49-version-1-modificationdate-1630648012993-api-v2.png

Configuration after installation of Embedded Terminal

Configure access to device functions

To restrict access to walk up functions by Dispatcher Paragon user access right setting, the setting bellow need to be configured.

Go to Permissions > Permissions > Access Control and s et Device Control Panel Access to Locked.

By configuring this, Dispatcher Paragon authentication screen becomes the home screen and the user need to authenticate to access to any functions.

If the administrator wants to define access to individual function separately, configure App Access instead of Device Control Panel Access.

After uninstallation of the Dispatcher Paragon Embedded Terminal from the MFD, these settings need to be set to Unlocked in order to allow access to the MFD's functions again.

images/download/attachments/284929702/image2021-6-1_13-56-20-version-1-modificationdate-1630648012630-api-v2.png

images/download/attachments/284929702/image2021-6-1_13-55-11-version-1-modificationdate-1630648012640-api-v2.png

Configure color copy restriction

For XCP plugin terminal to restrict access to Full color copy by Dispatcher Paragon user access right setting, the setting bellow need to be configured.

Go to Permissions > Permissions > Access Control and s et Color Copying to Locked.

images/download/attachments/284929702/image2021-6-1_13-56-20-version-1-modificationdate-1630648012630-api-v2.png

images/download/attachments/284929702/image2021-6-1_13-58-55-version-1-modificationdate-1630648012653-api-v2.png

Device NVM setup

Accounting settings

For ApeosPort to report accounting of print jobs to print jobs delivered by the Dispatcher Paragon system, this configuration is required. Also if this configuration is not done, ApeosPort requires authentication for print request and stores print jobs without authentication information to the internal storage.

This requires Fuji Xerox Customer Engineer do this onsite.

1 Input in Chain-Link and corresponding value as 701-436=0

images/download/attachments/284929702/AP7-CE-MAINTENANCE-NVN-version-1-modificationdate-1630648012123-api-v2.JPG

2 Reboot the machine if required.

Dispatcher Paragon Payment System settings

This configuration is required if SCAN should be also managed based on credit/quota via Payment System.

This requires Fuji Xerox Customer Engineer do this onsite.

The following settings is required to be done in order to make scan control (scan quota which limits number of scanning page) working on Fuji Xerox devices.

Set NVM 850-015 = 1 will enable the control. Set NVM 850-015 = 0 will disable the control.

1 Input in Chain-Link and corresponding value as 850 -015=1

images/download/attachments/284929702/AP7-CE-MAINTENANCE-NVN-version-1-modificationdate-1630648012123-api-v22.JPG

2 Reboot the machine if required.