[Setup on browser]

Step 1
Click the [Setup] tab.
Step 2
Click the button for the desired menu.
Step 3
Click the button for the desired submenu.

Step 4
Configure each setting item. Click the [Set] button after completing the settings.

→ The settings will be applied. When moving to another page without clicking the [Set] button, the configured settings will be canceled.


Important:

● If the settings are applied, other login users will be forcibly logged out.


● If the settings relating to the user management are applied, all login users will be forcibly logged out.


● Recording may not be performed for around 4 seconds just after the settings are applied.


It is possible to configure the settings of the recorder using a web browser.
Refer to the following section for setup items that can be configured from the web browser and their further information.
☞ Lists of the setting items (Setup menu)
Set the settings related to the display of the web browser such as a group title of the camera.
Click the [Monitor] button on the setup menu and then click the [Web browser] tab.
Set whether to use the group display or not.
On: Uses the group display.
Off: Does not use the group display.
Default: Off
Enter a group title to display for each group (G1 ~ G8)(within 16 characters).
Assign the camera to each group (G1 ~ G8).
Click the [Setup>] button of "ONVIF Setup" in [Camera] - [Advanced Setup] tab to display a menu related to ONVIF connections. Normally there is no need to change the default settings. Do not normally use it.
Click the [View>] button of [Data output logs] in [Maintenance] - [System administration] to check the history of users who have copied or downloaded data. Up to 100 records are stored, and when the number of records exceeds 100, the oldest records are overwritten.
Click on "Click here for OSS information" under [Maintenance] - [System management], and the license of the OSS in use will be displayed.
Click [Execute >] under "Download root certificate" in [Security] – [Communication] to download the root certificate.
This function is used when building a secure network environment using an certified LAN switch. Contact your network administrator regarding certified LAN switches.
Important:

● If you cannot access this recorder for some reason after setting [IEEE 802.1X] to On, connect it to a switch or port without certification. IEEE 802.1X will be disabled and you will be able to access this recorder.


●Connect the IEEE 802.1X certified LAN switch to the [Camera/PC port].


Click the "Security" button in the setup menu and click the "IEEE 802.1X" tab.
[IEEE 802.1X]
Set whether to perform port certification using IEEE 802.1X.
  On: Perform port certification
Off: Do not perform port certification
Default: Off
[EAP method]
Select the certification method from EAP-PEAP/EAP-TLS.
Default: EAP-PEAP

The procedure differs depending on the EAP method. Refer to the following section for the details.

[User name]
Enter the user name to access the certified LAN switch or the user name registered on the server.
If it is not registered on the server, enter any username.
Available number of input characters: 1 to 32
Characters that cannot be input: Full-width, half-width symbols " " ", " & ", " : ", " ; ", "¥"
[Password][Retype password]
Enter the password to access the certified LAN switch.
Available number of input characters: 4 to 32
Characters that cannot be input: Full-width, half-width symbols " " ", " & "
■ Server certificate
[Installation of the root certificate]
Install the root certificate.
Installation is possible only when [IEEE 802.1X] is Off.

The specifications of the certificates that can be installed are as follows.

・Data format: PEM format, DER format (extension is .pem or .der)


・Maximum number of certificates included in PEM format: 1 (excluding intermediate CA certificate)


[Root certificate information]
Displays information about installed root certificate.
  Not installed: Certificate is not installed
(Certificate host name): Displayed if a certificate is installed
Expired: The certificate has expired

You can check the detailed information of the root certificate by clicking the [Confirmation] button.
Root certificates can be deleted using the [Delete] button.
Root certificate information
■ Client certificate
[Installation of the private key or the client certificate including private key]
Install the private key or client certificate including private key.
Installation is possible only when [IEEE 802.1X] is Off.

The specifications of the certificates that can be installed are as follows.

・Data format: PEM format, PFX format (extension is .pem or .pfx)


・Key length [bit]: 1024, 1536, 2048, 3072, 4096


・Maximum number of certificates included in PEM format: 6 (including intermediate CA certificate)


[Password]
Input password for private key when private key or certificate of PFX format is encrypted. Leave password blank when not encrypted.
Available number of input characters: 0 to 30
[Installation of the client certificate]
Install the client certificate.
Installation is possible only when [IEEE 802.1X] is Off.

The specifications of the certificates that can be installed are as follows.

・Data format: PEM format (extension is .pem)


・Maximum number of certificates included in PEM format: 6 (including intermediate CA certificate)


[Install status of private key] 
Displays the private key installation status.
  Not installed: Not installed
Installed: Installed

The private key can be deleted using the [Delete] button.
[Client certificate information]
Displays information about installed client certificate.
  Not installed: Certificate is not installed
(Certificate host name): Displayed if a certificate is installed
Expired: The certificate has expired

You can check the detailed information of the client certificate by clicking the [Confirmation] button.
Client certificates can be deleted using the [Delete] button.
Client certificate information
Note:

●Make sure that the root certificate and client certificate have not expired. If the validity period has expired, you may not be able to use the port certification function.


●If the client certificate is signed by an intermediate CA, include the intermediate CA certificate in the client certificate and install it. In that case, the client certificate should come first, followed by the intermediate CA certificate.


●If you install a certificate larger than 10 kB, no error will be displayed during installation, but an error may occur during connection.


●Each certificate can be deleted only when [IEEE 802.1X] is Off.


Configure the settings of IEEE802.1X according to EAP method
Note:

●If [IEEE 802.1X] is On, set [IEEE 802.1X] to Off before starting the settings.


EAP-PEAP
STEP1
Select On for [IEEE 802.1X].

STEP2
Select EAP-PEAP in [EAP method].

STEP3
Enter [User Name] and [Password]/[Retype password], and click the [Set] button.
EAP-TLS
STEP1
Click the [Select File] button for [Installation of the root certificate], specify the root certificate, and click the [Execute] button.
The host name (CommonName) of the certificate is displayed in [Root certificate information].

STEP2
Click the [Select File] button for [Installation of the private key or the client certificate including private key] and specify the private key or client certificate including private key.
Input [Password] for private key when private key or certificate of PFX format is encrypted. Leave password blank when not encrypted.

STEP3
Click the [Execute] button to install.
"Installed" is displayed in [Install status of private key ].
If you have installed a client certificate that includes the private key, "Installed" is also displayed in [Client certificate information].

STEP4
If you installed the private key in step 2, click the [Select File] button for [Installation of the client certificate], specify the client certificate, and click the [Excecute] button.
The host name (CommonName) is displayed in [Client Certificate Information].

STEP5
Select On for [IEEE 802.1X].

STEP6
Select EAP-TLS in [EAP method].

STEP7
Enter the user name registered on the server in [User Name] and click the [Set] button.
If it is not registered on the server, enter any username. There is no need to enter [Password]/[Retype password].
To update the firmware of the recorder to the latest version, proceed as follows.
Refer to the following section for the operation procedures if the software is saved on the USB medium.
☞ Configure the settings and operations relating to the system [System management]

Step 1
Download the firmware of the latest version onto a hard disk drive of a PC.

Step 2
Click the [Maintenance] button and then click the [System management] tab.
Step 3
Designate the downloaded firmware by clicking the [Browse...] button of "Firmware update".

Step 4
Click the [Execute >] button.
→ The confirmation window will be displayed to start the update procedure.
Note:

● [NX410/NX510] Depending on the firmware to be updated, it may take up to 30 minutes for upgrading, leaving the start screen displayed.


● Do not turn off the recorder or disconnect the network cable during the software upgrade.


● Contact your dealer for further information about the firmware update.