Administer > Configuration > Common Access Card

Common Access Card

This chapter provides information about the integration between a Common Access Card (CAC) and CSA, where CAC is used as the user authentication mechanism. By configuring CAC, you are able to log into CSA using a Personal Identity Verification (PIV) card.

Caution If you are configuring CSA on Windows to be compliant with FIPS 140-2, do NOT configure CAC before configuring CSA to be compliant with FIPS 140-2. If you have configured any feature before configuring CSA to be compliant with FIPS 140-2, you must re-install CSA.

After integrating CSA with CAC, the following log in rules apply:

  • You can log in to the Cloud Service Management Console and the Marketplace Portal using a PIV card with a valid certificate.
  • Log in to the Cloud Service Management Console and the Marketplace Portal using a CSA built-in user account without a PIV card.
  • You can only log in to the Cloud Service Management Console and the Marketplace Portal as a valid LDAP user with a PIV card.

Caution For the Cloud Service Management Console on Windows, in a standard environment (not a FIPS 140-2 compliant environment), only the JKS keystore type is supported for CAC. In a FIPS 140-2 compliant environment, only the PKCS #12 keystore type is supported for CAC.

Complete the following tasks to integrate CSA with CAC: