62
CoSign for SharePoint Version 5.1 -------------------------------- User Guide

CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

  • Upload
    ngothuy

  • View
    236

  • Download
    0

Embed Size (px)

Citation preview

Page 1: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

CoSign for

SharePoint Version 5.1

--------------------------------

User Guide

Page 2: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

Notice

This manual contains information that is proprietary to ARX (Algorithmic Research) Ltd. No part of this manual may be reproduced in any form whatsoever without prior written approval by ARX (Algorithmic Research) Ltd.

ARX (Algorithmic Research) Ltd. reserves the right to revise this publication and make any changes without obligation to notify any person of such revisions and changes.

For further information, contact ARX (Algorithmic Research) Ltd.

Trademarks

CoSign Central Enterprise, CoSign Central FIPS, CoSign Central Starter, CoSign Desktop, MiniKey, and CryptoKit are trademarks of ARX (Algorithmic Research) Ltd. Other names are trademarks or registered trademarks of respective owners and are used solely for identification purposes.

ARX (Algorithmic Research) Ltd, Tel. 1-866-EASY-PKI (327-9754) Site: www.arx.com

© Copyright 2010 ARX (Algorithmic Research) Ltd. All rights reserved.

CoSign for SharePoint – User Guide Pub. Date 10.10 Pub. No. CSN.SHRPNT.INS.USR V5.1.10.10

Page 3: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

i

Table of Contents

Chapter 1: Overview ...................................................................................................................................... 1

Requirements for Data Authentication Systems ........................................................................................................ 1 Introduction to CoSign .............................................................................................................................................. 2 CoSign Guides .......................................................................................................................................................... 3 CoSign Appliance Hardware Models ........................................................................................................................ 4 Intended Audience .................................................................................................................................................... 4 Organization of this Guide ........................................................................................................................................ 5

Chapter 2: Installing and Deploying the CoSign for SharePoint Solution ............................................... 7

CoSign for SharePoint Installation............................................................................................................................ 7 Installing and Configuring the CoSign Client .................................................................................................... 7 Installing the CoSign for SharePoint Solution ................................................................................................... 9

Deploying the CoSign for SharePoint Solution ...................................................................................................... 10 Deploying the CoSign for SharePoint Solution via the GUI ............................................................................ 10 Deploying the CoSign for SharePoint Solution via the CLI ............................................................................ 11 Verifying the Deployment ............................................................................................................................... 11

Retracting the CoSign for SharePoint Solution Deployment .................................................................................. 13 Uninstalling the CoSign for SharePoint Solution .................................................................................................... 14

Chapter 3: Configuring the CoSign for SharePoint Solution .................................................................. 15

Configuring at the SharePoint Installation Level .................................................................................................... 15 Activating CoSign for SharePoint at the Site Level ................................................................................................ 18 Defining CoSign Settings in Document Libraries ................................................................................................... 19

Defining the Content Type Settings ................................................................................................................. 22 Defining Signature Profile Settings ................................................................................................................. 25 Updating Signature Profile Settings ................................................................................................................. 27 Deleting a Signature Profile ............................................................................................................................. 28 Creating a Signature Profile by Loading a Signature Field from a Document Template ................................. 28 Configuring Document Library Additional Information .................................................................................. 29

Defining CoSign Settings in Lists ........................................................................................................................... 30 Backing Up and Restoring CoSign for SharePoint Configurations ......................................................................... 33

Backing Up Configuration Parameters ............................................................................................................ 33 Restoring Configuration Parameters ................................................................................................................ 34

Chapter 4: Using the CoSign for SharePoint Solution for Signing Documents and Items .................. 37

Signing and Validating Documents in Document Libraries .................................................................................... 37 Signing Documents .......................................................................................................................................... 38 Validating Document Signatures ..................................................................................................................... 40 Reviewing Document Signatures ..................................................................................................................... 40

Signing and Validating Items in Lists ..................................................................................................................... 42 Signing Items ................................................................................................................................................... 43 Validating Item Signatures .............................................................................................................................. 45 Reviewing Item Signatures .............................................................................................................................. 45

Signing and Validating Entire Lists ........................................................................................................................ 46 Signing All List Items ...................................................................................................................................... 46 Verifying All List Items ................................................................................................................................... 46

Chapter 5: Using the CoSign for SharePoint Solution as a Custom Task in a Workflow .................... 47

Page 4: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

ii

Activating CoSign for SharePoint as a Custom Task ...............................................................................................47 Configuring a CoSign Signature Task in a Workflow .............................................................................................48 Starting a Workflow.................................................................................................................................................51 Signing a Document as Part of a Workflow .............................................................................................................53

Index.............................................................................................................................................................. 57

Page 5: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

1

Chapter 1: Overview

Over the last three decades, the biggest challenge of IT departments in many organizations has been transitioning to a paperless work environment. Seemingly, there has been tremendous success in this regard. Today, most transactions in the business world are performed electronically:

Documents are written using word processing programs.

Messages are sent via email.

Inventories and purchases are tracked using Enterprise Resource Planning (ERP) systems.

Medical information is stored in Electronic Medical Record (EMR) systems.

Although these transactions are performed in a paperless environment, organizations have still not managed to find an easy way to get rid of the paper used for data authentication (signing the authenticity of the data). Today, although organizations have invested large amounts of funding and other resources in creating paperless environments, their workers are still printing every transaction, signing it, and saving the printed copy. These organizations require a digital method for data authentication.

By moving to a viable electronic data authentication system, organizations can reduce their printing, archiving, shipping, and handling costs. In addition, better and more competitive customer service can often be provided.

Requirements for Data Authentication Systems

A viable data authentication system must meet the following specifications:

Security – The system must ensure that no one other than the data creator can tamper with or change the data in any way.

Third-party validation – The system must enable any third party to validate the authenticity of the data. If a dispute arises between the parties (the data creator and recipient), any third party must be able to validate the data authenticity in order to settle the dispute.

System independence – Data authentication must be independent of the system that created the data. Users must be able to validate the authenticity of the data using a known standard that is independent of any specific system.

Validation over time – Users must be able to validate data authenticity at any point in time. Authenticity cannot expire at any point.

Currently, the only data authentication method known to support all of these requirements is the Public Key Infrastructure (PKI) method of authenticating data, also known as “digital

signatures”.

Page 6: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

1 CoSign for SharePoint User Guide

2

Introduction to CoSign

CoSign is a PKI-based, off-the-shelf digital-signature solution that can be integrated with a wide range of applications. CoSign enables organizations to embed digital signatures in various documents, forms, and transactions. CoSign is a turnkey, hardware-based solution that is easily and quickly deployed in the network and provides cost-effective digital-signature capabilities for the organization.

CoSign includes all the components needed for PKI-based digital-signature deployment. You do not need to install any other device or integrate any other component for the system to work.

CoSign integrates with leading user management systems, including Microsoft Active Directory, Novell NDS, and LDAP based environments. This integration ensures no overhead in managing the digital-signature system and signature credentials (i.e., the private keys that are needed in a PKI environment), solving one of the main problems of legacy digital-signature systems. System managers, network managers, and end-users can continue to use the IT infrastructure in the same manner as before CoSign was installed.

CoSign stores the signature credentials in a secure server, ensuring that the signer has exclusive access to his or her signature credentials, while still maintaining a centrally managed solution. This is necessary in order to fulfill the security requirement of the data authentication system.

An increasing number of applications can use CoSign as their digital-signature layer without needing any further integration, including:

Microsoft Office 2010 (Word, Excel, and PowerPoint).

Microsoft Office 2007 (Word, Excel, and PowerPoint).

Microsoft Office XP/2003 (Word, Excel, and PowerPoint).

Microsoft InfoPath.

Adobe Acrobat.

Microsoft SharePoint 2007 and 2010.

XML files.

TIFF files.

Word Perfect.

Microsoft Outlook and Outlook Express.

Adobe Server forms (for signing web forms).

AutoCAD.

Lotus Notes.

Microsoft BizTalk.

FileNet eForms.

Page 7: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

Overview 1

3

Verity Liquid Office.

ERP systems (e.g., SAP).

Crystal Reports.

OpenOffice (Writer, Calc, etc.).

StarOffice (Writer, Calc, etc.).

Web applications.

Any application that has a print option can use CoSign to generate a PDF file and sign it.

For information on using CoSign with other applications, contact ARX technical support.

CoSign also leads the development of Signature API (SAPI), an API that enables application developers to easily integrate with CoSign. For more information about integrating with CoSign, refer to the CoSign Programmer Guide (SAPI).

CoSign includes the following components:

The CoSign appliance hardware and software, connected to the organization’s network.

For more information, refer to the chapter Installing CoSign in the CoSign Administrator

Guide.

The CoSign client software, installed on the users’ computers. For more information, refer

to Chapter 2: Installing and Deploying the CoSign for SharePoint Solution.

The CoSign Administrative software that includes the CoSign Microsoft Management Console (MMC) snap-in, installed on the administrative computer. For more information, refer to the chapter Managing the CoSign Installation chapter in the CoSign Administrator

Guide.

CoSign Guides

CoSign documentation includes several guides:

CoSign Administrator Guide – Provides all the information necessary for an administrator to install and manage the CoSign appliance in the various environments in which CoSign can operate.

CoSign User Guide – Provides all the information necessary for an end user to use CoSign. Includes information about special add-ins for various applications such as Microsoft Office. The CoSign User Guide is only relevant when the CoSign client is used in conjunction with the CoSign appliance.

CoSign Desktop User Guide – Provides all the information necessary for using the CoSign Desktop. Includes information about special add-ins for various applications such as Microsoft Office.

Page 8: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

1 CoSign for SharePoint User Guide

4

CoSign Programmer Guide (SAPI) – Provides all the information necessary for a developer to interact with CoSign. Three application interfaces (API) are available:

An interface for C/C++ applications.

An interface for COM-based applications.

An interface based on Web Services to be used by Application Servers.

CoSign Appliance Hardware Models

There are several available hardware models of the CoSign appliance. The models differ in functionality, as follows:

CoSign Central Enterprise – A rack-mountable industrial 1U appliance. This appliance is not packaged in a tamper-response casing.

CoSign Central FIPS – This rack-mountable 4U appliance is based on a sealed, tamper-response casing. The hardware box is FIPS 140-2 level 3 validated.

CoSign Central SSCD – The CoSign SSCD is very similar to the CoSign Central FIPS model. The major difference is that all end users’ private keys are located inside an array

of SmartCard chips and the RSA signature operation is performed inside a SmartCard. Each user’s key can be used only if a dedicated password is provided for accessing the

key. Thus, the end user’s private key is considered more protected than in the CoSign

FIPS model.

The CoSign SSCD appliance provides a solution that is compliant with the Common Criteria SSCD protection profile (CWA-14169).

CoSign Central Starter – CoSign Central Starter is a digital-signature turnkey solution that meets the needs of smaller organizations. CoSign Central Starter is limited to organizations of no more than 50 users.

Note: Throughout this guide, the term “CoSign” refers to all hardware models (Central

Enterprise, Central FIPS, Central SSCD, and Central Starter), and the CoSign Desktop

model, unless otherwise noted.

Intended Audience

This guide is intended for users wishing to implement the CoSign for SharePoint solution. It is assumed that readers have prior knowledge of CoSign and SharePoint.

Page 9: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

Overview 1

5

Organization of this Guide

This guide is organized as follows:

Chapter 1: Overview – Provides an overview and introduction to CoSign.

Chapter 2: Installing and Deploying the CoSign for SharePoint Solution – Describes how to install and deploy the CoSign for SharePoint solution.

Chapter 3: Configuring the CoSign for SharePoint Solution – Describes the various options available for configuring the CoSign for SharePoint solution to enable the production of digital signatures at the site level.

The chapter also describes how to perform backup/restore to the CoSign for SharePoint configuration.

Chapter 4: Using the CoSign for SharePoint Solution for Signing Documents and Items – Describes how to use the CoSign for SharePoint solution to produce a digital signature.

Chapter 5: Using the CoSign for SharePoint Solution as a Custom Task in a Workflow – Describes how to use the CoSign for SharePoint solution to produce a digital signature as part of a workflow procedure using the Microsoft SharePoint custom tasks.

Index – Provides a comprehensive index of the topics discussed in this guide.

Page 10: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying
Page 11: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

7

Chapter 2: Installing and Deploying the CoSign for

SharePoint Solution

This chapter describes how to:

Install the CoSign for SharePoint solution.

Deploy the CoSign for SharePoint solution.

CoSign for SharePoint Installation

The CoSign for SharePoint solution enables organizations to extend their existing SharePoint installations and enable the following operations:

Sign and verify documents that are managed by the Microsoft SharePoint product.

Sign and verify lists that are managed by the Microsoft SharePoint product.

CoSign for SharePoint supports the following versions of Microsoft SharePoint:

Microsoft SharePoint 2007.

Microsoft SharePoint 2010.

CoSign for SharePoint is installed as a standard solution for SharePoint, and supports the following document types:

PDF files with or without existing signature fields.

*.doc files with existing signature fields using an entire file signature type.

*.docx or *.xlsx files with existing signature fields.

Both administrative operations and user operations are based on Web-based applications, where the end user does not have to install any software on the end PC. However, a CoSign Client must be installed on the server that is installed with the SharePoint product. The recommended order of installation is:

1. Installing and Configuring the CoSign Client.

2. Installing the CoSign for SharePoint Solution.

Installing and Configuring the CoSign Client

CoSign for SharePoint accesses CoSign through the CoSign client installation. Therefore, before installing the CoSign for SharePoint solution, you should:

1. Install a CoSign Client version 5.23 or above, on the server that is installed with the SharePoint product.

Page 12: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

2 CoSign for SharePoint User Guide

8

2. Configure the CoSign client for optimal usage by the CoSign for SharePoint solution. Refer to Configuring the CoSign Client for the CoSign for SharePoint Solution.

Configuring the CoSign Client for the CoSign for SharePoint Solution

To configure the CoSign Client to work with the CoSign for SharePoint solution:

1. Access the CoSign control panel by selecting Start > Programs > ARX CoSign > CoSign

Control Panel. The CoSign Control panel appears.

2. Select Client Configuration. The CoSign configuration utility’s main window appears.

3. Click to the left of the Client node.

4. Click the Login dialog node.

Figure 1 CoSign Configuration Utility – Client Configuration – Login Dialog Parameters

5. In the Login dialog screen:

a. Uncheck the Permit known applications only checkbox.

b. Select Disable login dialog.

6. Select File > Apply (save to registry) to apply the changes.

7. Click the Timeouts node.

Page 13: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

Installing and Deploying the CoSign for SharePoint Solution 2

9

Figure 2 CoSign Configuration Utility – Client Configuration – Timeout Parameters

8. In the Timeouts screen, set the Configuration reload interval to 0.

9. Select File > Apply (save to registry) to apply the changes.

10. Select File > Exit to exit the CoSign configuration utility.

Installing the CoSign for SharePoint Solution

To install the CoSign for SharePoint solution:

1. Open a command line prompt.

2. Change the current directory to the SharePoint utilities folder. By default, this should be:

<Program Files>\Common Files\Microsoft Shared\web server

extensions\14\BIN>

3. Run the following command to add the CoSign for SharePoint solution to the SharePoint Solutions Store:

stsadm.exe -o addsolution -filename <Full

Path\>cosign4sharepoint.wsp

The cosign4sharepoint.wsp file can be found on the CoSign SharePoint CDROM.

Note: It is also possible to manually install the CoSign for SharePoint solution

through the Manage Farm Solutions options in the SharePoint management screens,

but in a case of repeated installations and uninstallations, this is not recommended.

Page 14: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

2 CoSign for SharePoint User Guide

10

4. Check the SharePoint server farm to confirm that the CoSign for SharePoint solution was successfully installed:

a. In the SharePoint Central Administration menu, select System Settings. The System

Settings screen appears.

b. Select Manage Farm Solutions. The Solution Management screen appears.

Figure 3 Solution Management Screen – CoSign for SharePoint Installed

c. Verify that the cosign4sharepoint entry is present. The entry cosign4sharepoint indicates that the CoSign for SharePoint solution was successfully installed.

Deploying the CoSign for SharePoint Solution

An installed solution is not automatically deployed by default. You can either deploy the solution through the GUI or through the Command Line Interface (CLI)

Deploying the CoSign for SharePoint Solution via the GUI

To deploy the CoSign for SharePoint solution via the GUI:

1. In the SharePoint Central Administration menu, select System Settings. The System

Settings screen appears.

2. Select Manage Farm Solutions. The Solution Management screen appears.

3. Click the CoSign for SharePoint solution entry. The Solution Properties screen appears.

4. Click Deploy Solution.

Page 15: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

Installing and Deploying the CoSign for SharePoint Solution 2

11

Figure 4 Solution Properties Screen – Deploy Solution

Deploying the CoSign for SharePoint Solution via the CLI

To deploy the CoSign for SharePoint solution via the CLI:

1. Open a command line prompt.

2. Enter the following command:

stsadm.exe -o deploysolution -name cosign4sharepoint.wsp -immediate –allowgacdeployment -force

3. Update the SharePoint site map using the following command:

stsadm.exe -o copyappbincontent

Verifying the Deployment

To verify the deployment of the CoSign for SharePoint solution:

1. In the SharePoint Central Administration menu, select System Settings. The System

Settings screen appears.

2. Select Manage Farm Solutions. The Solution Management screen appears.

3. Verify that the cosign4sharepoint entry has the status Deployed.

Page 16: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

2 CoSign for SharePoint User Guide

12

Figure 5 Solution Management Screen – CoSign for SharePoint Solution Deployed

The solution is now installed, and can provide the following features:

CoSign for SharePoint Document Libraries – Enables the user to sign documents.

CoSign for SharePoint Lists – Enables the user to sign Data elements defined within a List as part of the site.

CoSign for SharePoint Signatures – Automatic Signature Validation in Document Libraries – Extends the capabilities of the CoSign for SharePoint Document Libraries option to enable automatic signature validation for documents.

CoSign for SharePoint Signatures – Automatic Signature Validation in Lists – Extends the capabilities of the CoSign for SharePoint Lists option to enable automatic signature validation for lists.

These features are disabled by default and must be enabled to provide the digital signature functionality. These features can be enabled for any relevant Site that is defined as part of the SharePoint installation. For more information, refer to Configuring the CoSign for SharePoint

Solution.

Page 17: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

Installing and Deploying the CoSign for SharePoint Solution 2

13

Retracting the CoSign for SharePoint Solution Deployment

To retract the CoSign for SharePoint solution deployment:

1. In the SharePoint Central Administration menu, select System Settings. The System

Settings screen appears.

2. Select Manage Farm Solutions. The Solution Management screen appears.

3. Click the cosign4sharepoint.wsp entry. The Solution Properties screen appears.

Figure 6 Solution Properties Screen – Retract Solution

4. Click Retract Solution. The Solution Management screen appears, displaying that the CoSign for SharePoint solution has the status Not Deployed (Figure 3).

Page 18: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

2 CoSign for SharePoint User Guide

14

Uninstalling the CoSign for SharePoint Solution

Note: You must retract the deployment of the CoSign for SharePoint solution before

you can uninstall it. For more information, refer to Retracting the CoSign for SharePoint Solution Deployment.

To uninstall the CoSign for SharePoint solution:

1. In the SharePoint Central Administration menu, select System Settings. The System

Settings screen appears.

2. Select Manage Farm Solutions. The Solution Management screen appears.

3. Click the cosign4sharepoint.wsp entry. The Solution Properties screen appears.

4. Click Remove Solution.

Figure 7 Solution Properties Screen – Remove Solution

Page 19: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

15

Chapter 3: Configuring the CoSign for SharePoint

Solution

To enable using the CoSign for SharePoint solution once it is deployed, the only action you must perform is to activate it at the site level (refer to Activating CoSign for SharePoint at the

Site Level). You can also optionally configure the various settings of the CoSign for SharePoint solution, but if you do not, the default values will be used.

The CoSign for SharePoint solution can be configured at several levels:

SharePoint Installation Level – Parameters that are applicable to the overall SharePoint level. This is done through SharePoint Central Administration.

Site Level – Parameters that are applicable to a specific website.

Document Library Level – Parameters that are applicable to all documents within the document library.

List Level – Parameters that are applicable to all items within a list.

In addition, this chapter describes how to backup and restore CoSign for SharePoint solution configurations.

Configuring at the SharePoint Installation Level

To configure at the SharePoint Installation level:

1. In the SharePoint Central Administration menu, select CoSign for SharePoint.

Figure 8 CoSign for SharePoint Screen – CoSign Server authentication mode Option

Page 20: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

3 CoSign for SharePoint User Guide

16

2. Click CoSign Server authentication mode. The CoSign Server Authentication Mode screen appears:

Figure 9 CoSign Server Authentication Mode Screen

3. In the CoSign authentication mode field, select one of the following options to specify how users should be authenticated to the CoSign appliance while signing using the CoSign for SharePoint solution:

Standard – Users need to enter a user ID and a password to be authenticated for every digital signature operation. This is the default setting.

Kerberos SSPI (Active Directory) – Users can perform a digital signature operation which relies on the existing login to the Microsoft Domain. Users do not need to provide any additional credentials upon signing.

Note: If you select Kerberos SSPI, you must perform additional configurations in

Microsoft SharePoint to enable ticket based signatures. Refer to Enabling Ticket-Based Signatures.

4. Optionally, select the Require extended password checkbox. An extended password should be used when CoSign is configured to use a RADIUS-based password for every signature operation (Extended Authentication Mode). Usually this mode will be used for providing an OTP (One Time Password) for every digital signature operation.

5. In the Credentials will expire after X seconds field, enter a number of seconds. Setting a credentials expiration time enables the use of cache-based credentials, in which any digital signature operation which occurs within the defined time window does not require the user to provide a password or an OTP. If you do not intend to use this credentials expiration feature, enter a value of 0.

Page 21: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

Configuring the CoSign for SharePoint Solution 3

17

Note: If you are requiring an extended password and also using the credentials

expiration feature, do not set the Prompt For Signature parameter to True in the

CoSign System parameters. For information about setting this parameter, refer to

the CoSign Administrator Guide, chapter 5: Managing the CoSign Appliance.

6. If you use SharePoint 2010 and also intend to use the credentials expiration feature, you need to add the SessionStateModule module (this module is automatically loaded in SharePoint 2007). Perform the following in the IIS Management application:

a. Select IIS management Sites SharePoint80 Modules.

b. In the Actions side-window, click Add managed module.

Figure 10 Add Managed Module Window

c. Enter a name in the Name field.

d. In the Type field, select the entry beginning with System.Web.SessionState.SessionStateModule, system.Web.

e. Click OK.

f. Exit IIS management.

g. In the command line prompt, run the following for the changes to take effect: iisreset

7. Click Save to save the configuration settings.

Enabling Ticket-Based Signatures

To enable ticket-based signatures for Kerberos authentication:

1. Go to the SharePoint Central Administration menu.

2. Select Security > General Security > Specify Authentication Providers.

3. Select the default zone.

4. Select the IIS Auth Settings section.

5. Select Integrated Windows authentication

6. Select Negotiate Kerberos

7. Click OK.

Page 22: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

3 CoSign for SharePoint User Guide

18

Activating CoSign for SharePoint at the Site Level

Each SharePoint website can be configured to support CoSign digital signatures for the documents and lists defined for the site.

In order to enable the CoSign for SharePoint solution for a site, each of the features listed in Verifying the Deployment must be activated on every site that requires the use of digital signatures.

To activate the CoSign for SharePoint solution features for a site:

1. Go to the Site Settings screen for the site, and click Features.

Figure 11 Site Settings – Features Screen

2. Click Activate to activate each of the following CoSign for SharePoint features:

CoSign for SharePoint Document Libraries.

CoSign for SharePoint Lists.

CoSign for SharePoint Signatures – Automatic Signature Validation in Document

Libraries.

CoSign for SharePoint Signatures – Automatic Signature Validation in Lists.

Page 23: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

Configuring the CoSign for SharePoint Solution 3

19

Most users must activate all of these features, but some users may not need to activate all of them.

Note: In order to deploy the ARX CoSign Signature Tasks feature, you must go to

every site collection and click Activate for the feature. For more information, refer to

Chapter 5: Using the CoSign for SharePoint Solution as a Custom Task in a Workflow.

Optionally, click Deactivate to deactivate features for sites or site collections.

You now need to define CoSign settings in the relevant document libraries or lists. In order to sign and verify documents or items, you must at least enable CoSign digital signatures in the document libraries or lists. For instructions, refer to:

Defining CoSign Settings in Document Libraries.

Defining CoSign Settings in Lists.

Defining CoSign Settings in Document Libraries

You can define CoSign settings for every document library of a SharePoint site.

To define the CoSign settings for a document library:

1. Go to the relevant document library.

2. Select Library Settings.

3. Select CoSign Digital Signature Settings.

Figure 12 CoSign Digital Signature Settings Screen

Page 24: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

3 CoSign for SharePoint User Guide

20

4. Click Configuration Settings. The CoSign Configuration Settings screen appears.

Figure 13 CoSign Configuration Settings Screen – For Documents

5. Set the configuration settings as follows:

Enable CoSign Signatures – Select Yes.

Enable CoSign Automatic Verification – Select Yes if you want to enable automatic signature verification upon checking in a document. This will also update all digital signature attributes for checked-in documents.

Page 25: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

Configuring the CoSign for SharePoint Solution 3

21

Note: The parameter Require documents to be checked out before can be edited must

be set to Yes in order to be able to activate the Enable CoSign Automatic Verification parameter. If it is not, go to the Document Library Settings > Version Settings screen and select Yes for the Require documents to be checked out before can be edited parameter.

Logged-in User – During the act of performing a digital signature, a window appears prompting the signer to provide credentials. Select Yes to define that logged-in users must reenter their usernames for every digital signature operation, or select No to define that the logged-in user’s name is automatically recognized and displayed in the username field.

It is recommended that you enable this feature when CoSign is installed in Active Directory environments.

Post-Signing Redirection – After the digital signature is performed, you can define that the Web browser is directed to a predefined URL. Select one of the options:

Default View – The user is redirected to the view which is defined as the default for the current SharePoint Document Library.

Note: The Default View is the recommended setting.

Predefined View – The user is redirected to the predefined SharePoint View. Select a SharePoint View in the corresponding drop-down list.

Predefined URL – The user is redirected to the given URL. Define the URL in the corresponding field.

Note: The URL must begin with “http://” or “https://”.

Predefined Reasons for signing – When a user signs, the user needs to enter the reason for having done so:

Enforce Predefined Reasons – Select Yes to specify that the user must select a reason from the predefined reasons list.

Predefined reasons list – Specify a list of reasons. In the Enter new reason field, enter text for a reason and click Add to add it to the list. You can also delete an entry from the list by selecting it and clicking Delete.

Note: You can also define reasons per content type. For more information,

refer to Defining the Content Type Settings.

Columns – You can define which columns appear in the Edit View screen for each document in the document library. You can select the following available columns:

Signature Status – The overall status of all signatures in the document. The possible statuses are:

Not Signed – The document does not contain digital signatures.

Unknown – The document's signature status has not been verified yet.

Page 26: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

3 CoSign for SharePoint User Guide

22

Valid Signatures – The document contains at least one digital signature, and all signatures are valid.

Invalid Signature – The document contains at least one invalid digital signature.

Last Signature Reason – Reason for the most recent signature in the document.

Last Signature Time – Time of the most recent signature in the document.

Last Signer Name – Signer name of the most recent signature in the document.

Signature Counter – Number of signatures in the document.

Last Signature Status – Verification status of the most recent signature in the document.

Last Verified On – Date when the document was verified.

Defining the Content Type Settings

In SharePoint, documents can be classified according to predefined content types. Every document that is managed in SharePoint has a content type, for which specific settings can be defined. In addition, for every content type, several signature profiles can be defined. Each signature profile is identified by a name, and can be used to define signature field characteristics.

Note: Before defining content type settings, make sure you set Enable CoSign

Signatures to Yes in the CoSign Configuration Settings screen (Figure 13).

Otherwise, you will not see any items in the list of content types (Figure 14).

To define the content type configuration settings:

1. Go to the relevant document library.

2. Select Library Settings.

3. Select CoSign Digital Signature Settings.

Page 27: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

Configuring the CoSign for SharePoint Solution 3

23

Figure 14 CoSign Digital Signature Settings Screen – Selecting a Content Type

4. Select a content type.

The Content Type Settings screen appears (Figure 15).

Page 28: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

3 CoSign for SharePoint User Guide

24

Figure 15 Content Type Settings Screen

5. Click Configuration Settings.

The Content Type Configuration Settings screen appears.

Figure 16 Content Type Configuration Settings Screen

Page 29: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

Configuring the CoSign for SharePoint Solution 3

25

6. Set the configurations as follows:

User-Generated Signature Fields – Select No to define that a user will only be able to sign using the Signature Profiles you have defined for this Content Type. Select Yes to define that a user will also be able to sign any additional signature fields that were created in the document.

Predefined Reasons for Signing – When a user signs, the user needs to enter the reason for having done so:

Enforce Predefined Reasons – Select Yes to define that the reasons list is enforced, in which case the user must select a reason from the predefined reasons list.

Predefined reasons list – Specify a list of reasons. In the Enter new reason field, enter text for a reason and click Add to add it to the list. You can also delete an entry from the list by selecting it and clicking Delete.

Note: By default, the definition for this parameter at the Content Type Settings level

overrides the definition set at the document library level. If, however, the list of

reasons is left empty, then both the list of available reasons and the Enforce Predefined Reasons status is taken from the document library configuration.

Defining Signature Profile Settings

Several signature profiles can be defined for every content type. A signature profile defines the characteristics of a signature field. These characteristics are used for generating a new signature field in a given document following a digital signature operation.

To define the Signature Profile settings:

1. In the CoSign Digital Signature Settings screen (Figure 12), select a content type. The Content Type Settings screen appears (Figure 15).

2. Click Create new Signature Profile. The Signature Profile screen appears.

Page 30: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

3 CoSign for SharePoint User Guide

26

Figure 17 Signature Profile Screen

3. Configure the signature profile settings as follows:

Signature Profile Name – Define the name and details about the signature profile:

Name – Enter the identity of the signature profile, which is the name of the signature field created in the documents. The name is case sensitive, and can be composed only of alphanumeric characters and the following symbols: +,-,=,_.

Description – Optionally, enter descriptive information about the signature field.

Page 31: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

Configuring the CoSign for SharePoint Solution 3

27

Default Signature Profile – Define whether this profile is the default profile of the content type.

Signature Visibility – Define whether the signature field is visible or not.

Signature Size and Location – Define the location of the signature (X,Y coordinates), its width, height, and page number.

Note: The definition of the coordinates depends on the type of document. Currently,

PDF is the only supported document type, so the entered coordinates must be

according to PDF definitions.

Signature Field Details – Define the visible content of the signature field. You can select or deselect all required elements from the following list:

Signed By.

Reason.

Logo.

Date/Time.

Graphical Signature.

Initials.

Time/Date Appearance Format – Define the date and time format for the signature profile:

Date Format – The format of the displayed signature date.

Time Format – The format of the displayed signature time.

Display GMT Offset – Defines whether the signature time includes a GMT offset.

4. Click Save.

Updating Signature Profile Settings

You can update the settings of an existing signature profile.

To update a Signature Profile’s settings:

1. In the CoSign Digital Signature Settings screen (Figure 12), select a content type. The Content Type Settings screen appears (Figure 15).

2. Select a signature profile. The Signature Profile screen appears (Figure 17).

3. Update the Signature Profile’s settings. For an explanation of the various fields in the

screen, see the explanations in Defining Signature Profile Settings.

4. Click Save.

Page 32: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

3 CoSign for SharePoint User Guide

28

Deleting a Signature Profile

You can delete an existing signature profile.

To delete a Signature Profile:

1. In the CoSign Digital Signature Settings screen (Figure 12), select a content type. The Content Type Settings screen appears (Figure 15).

2. Select a signature profile. The Signature Profile screen appears (Figure 17).

3. Click Delete.

The signature profile is deleted.

Creating a Signature Profile by Loading a Signature Field from a Document

Template

You can create signature profiles by loading signature fields from a document template.

Important: This operation deletes all existing signature profiles in the relevant

content type, and creates new signature profiles according to the existing signature

fields in the document.

To generate signature profiles from signature fields inside a document template:

1. In the CoSign Digital Signature Settings screen (Figure 12), select a content type. The Content Type Settings screen appears (Figure 15).

2. Click Assign Signature Profiles from template. The Add Signature Profiles screen appears.

Figure 18 Assign Signature Profiles Screen

Page 33: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

Configuring the CoSign for SharePoint Solution 3

29

3. To the right of the Template Locations field, click Browse to locate and select a document template that already includes signature fields.

4. Click OK.

All signature profiles previously defined for the content type are permanently deleted. New signature profiles are generated for every existing signature field in the document template.

Note: Both unsigned signature fields and signed signature fields are used for

creating signature profiles.

Configuring Document Library Additional Information

You can configure which additional information will be displayed for every managed document in a SharePoint document library.

To configure additional information for a SharePoint document library:

1. Navigate to the Edit View screen.

Figure 19 Edit View Screen

2. Configure the settings as follows:

Name – Define the displayed name and web address for the document library:

Page 34: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

3 CoSign for SharePoint User Guide

30

View Name – Define the name which is displayed for the document library in SharePoint. Make sure to define a name which will be easily understood by users.

Web address of this view – Define the final portion of the web address at which the document library is to be stored.

Columns – For each available column type, select or unselect the Display checkbox to define whether the column should be displayed or hidden, and in the Position from

Left drop-down lists, define the order of the columns starting from the left side of the screen.

The following figure demonstrates a document List View with signature related information:

Figure 20 Documents with Additional Signature Information Displayed – Example

Defining CoSign Settings in Lists

You can define CoSign settings for every list in a site.

Note: It is recommended to backup all signature related information in a list before

configuring CoSign settings in the list.

To define a list’s Cosign settings:

1. Navigate to the relevant list, and go to the List Settings option.

2. Click the CoSign Digital Signature Settings option. The CoSign Configuration Settings screen appears.

Page 35: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

Configuring the CoSign for SharePoint Solution 3

31

Figure 21 CoSign Configuration Settings Screen – For Lists

Page 36: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

3 CoSign for SharePoint User Guide

32

3. Set the configuration settings as follows:

Enable CoSign Signatures – Select Yes.

Note: Setting Enable CoSign Signatures to No causes all existing signature

information to be deleted from this lists.

Enable CoSign Automatic Verification – Select Yes if you want to enable automatic signature verification when updating an item.

Logged-in User – During the act of performing a digital signature, a window appears prompting the signer to provide credentials. Select Yes to define that logged-in users must reenter their usernames for every digital signature operation, or select No to define that the logged-in user’s name is automatically recognized and displayed.

It is recommended that you enable this feature when CoSign is installed in Active Directory environments.

Enable Delete CoSign Signatures – When enabled, additional buttons are displayed on the List Item Signatures page, enabling users to delete previously created signatures. When disabled, existing signatures cannot be deleted.

Columns to Sign – Define which columns in the list item are authorized when the user signs. To add a column, select the column in the Available list columns area and click Add. To remove a column, select the column in the Selected list columns area and click Remove.

Post-Signing Redirection – After the digital signature is performed, you can define that the Web browser is directed to a predefined URL. Select one of the options:

Default View – The user is redirected to the view which is defined as the default for the current List.

Predefined View – The user is redirected to the predefined SharePoint View. Select a SharePoint View in the corresponding drop-down list.

Predefined URL – The user is redirected to a URL. Define the URL in the corresponding field.

Note: The URL must begin with “http://” or “https://”.

Reasons for Signing:

Require signers to add signature reason – Select Yes to define that signers must enter a reason every time they sign an item from this list.

Enforce Predefined Reasons – Select Yes to define that the reasons list is enforced, in which case the user must select a reason from the predefined reasons list.

Predefined reasons list – Specify a list of reasons. In the Enter new reason field, enter text for a reason and click Add to add it to the list. You can also delete an entry from the list by selecting it and clicking Delete.

Page 37: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

Configuring the CoSign for SharePoint Solution 3

33

Columns – You can define which columns appear in the Edit View screen for each item in the List. You can select the following available columns:

Signature Status – The overall status of all signatures in the item. The possible statuses are:

Not Signed – The item does not contain digital signatures.

Unknown – The item's signature status has not been verified yet.

Valid Signatures – The item contains at least one digital signature, and all signatures are valid.

Invalid Signature – The item contains at least one invalid digital signature.

Last Signature Reason – Reason for the most recent signature in the item.

Last Signature Time – Time of the most recent signature in the item.

Last Signature Name – Signer name of the most recent signature in the item.

Signature Counter – Number of signatures in the item.

Last Signature Status – Verification status of the most recent signature in the item.

Last Verified On – Date when the item was verified.

Backing Up and Restoring CoSign for SharePoint Configurations

It is recommended to make a backup whenever changes are made to the configuration of the CoSign for SharePoint solution.

Backing Up Configuration Parameters

Note: Backup files do not include security-related configuration parameters.

To backup the CoSign for SharePoint configuration to a file:

1. Go to the SharePoint Central Administration menu.

2. Click CoSign for SharePoint. The CoSign for SharePoint screen appears.

Page 38: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

3 CoSign for SharePoint User Guide

34

Figure 22 Central Administration – CoSign for SharePoint Screen

3. Click Backup CoSign for SharePoint configuration. The Backup CoSign for SharePoint

Configuration screen appears.

Figure 23 Backup CoSign for SharePoint Configuration Screen

4. Click the here link. A standard file save window appears. Specify the path of the backup file and press Enter. The backup file is saved.

Restoring Configuration Parameters

To restore a CoSign for SharePoint configuration from a file:

1. Go to the SharePoint Central Administration menu.

2. Click CoSign for SharePoint. The CoSign for SharePoint screen appears.

Page 39: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

Configuring the CoSign for SharePoint Solution 3

35

Figure 24 CoSign for SharePoint Screen – Restore CoSign for SharePoint configuration Option

3. Click Restore CoSign for SharePoint configuration. The Restore CoSign for

SharePoint Configuration screen appears.

Figure 25 Restore CoSign for SharePoint Configuration Screen

4. To the right of the Backup Location field, click Browse and locate the configuration backup file.

5. Click Restore to restore the configuration.

Note: Restored information does not affect new entities (such as document libraries)

that were created after the backup was performed.

Page 40: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying
Page 41: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

37

Chapter 4: Using the CoSign for SharePoint Solution

for Signing Documents and Items

Using the CoSign for SharePoint solution, users can digitally sign and validate documents and items when accessing a site in a Microsoft SharePoint installation. The following sections describe how to sign and validate documents and items.

Note: It is also possible to incorporate the CoSign for SharePoint solution as part of

a Workflow procedure. For more information, refer to Chapter 5: Using the CoSign for SharePoint Solution as a Custom Task in a Workflow.

Note: It is very important that access to the SharePoint server be based on the https

protocol and not on http, since credential information such as the User ID and

password are passed from the user’s PC to the SharePoint server.

Signing and Validating Documents in Document Libraries

Access a document library in SharePoint. The Document Library screen appears:

Figure 26 Document Library Screen

For each document in the list, you can open the document options menu that enables you to perform several operations. The CoSign for SharePoint solution enables you to perform the following options:

Sign with CoSign – Enables you to sign the document. Refer to Signing Documents.

Page 42: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

4 CoSign for SharePoint User Guide

38

Verify Signatures – Enables you to validate all signatures in the document. Refer to Validating Document Signatures.

Review Signatures – Enables you to view all signatures content inside the document. Refer to Reviewing Document Signatures.

Figure 27 Document Library Screen – CoSign for SharePoint Solution Options

Signing Documents

To sign documents:

1. In the Document Library screen, click the arrow to the right of the document name to display the list of document options (Figure 27).

2. Select Sign With CoSign. The Sign with CoSign screen appears.

Note: If the signing user does not need to provide any input for the digital signature

operation, the Sign with CoSign screen (Figure 28) does not appear, and a digital

signature operation is immediately performed on the document.

Page 43: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

Using the CoSign for SharePoint Solution for Signing Documents and Items 4

39

Figure 28 Sign with CoSign Screen for a Document

The displayed content depends on the defined configurations.

3. Select the desired settings. The following fields may appear:

Document Name – Name of the document. You can click the document name to review the document before signing.

Signature Profile – Select the signature profile to use. The list is populated according to the available signature profiles for the relevant content type in the current document library. Depending on the value of the Enable Signing of User-Generated Signature

Fields flag in the Content Type Configuration Settings screen (Figure 16), the list may also contain signature fields in the document.

Reason for Signing – Depending on the settings defined in the document library or content type, a list of available reasons is displayed from which the user can select the appropriate reason for signing. Furthermore, depending on these settings, a field enabling users to manually enter a reason for signing may also be displayed.

User Name and Password – Depending on the settings defined and the type of environment (Active Directory, etc.) the user may be required to enter a user ID and password, and possibly the extended password (the signature password). For more information on the extended password, refer to Configuring at the SharePoint

Installation Level.

4. Click Sign.

Page 44: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

4 CoSign for SharePoint User Guide

40

After Signing a Document

If the digital signature is successful, you are directed to a new page according to the settings specified in the Post-Signing Redirection field (see Figure 13). If you redirected to the Default View, the digital signature attributes are displayed (see Figure 20).

Note: The signing user must have only one certificate in the user’s account in the

CoSign appliance. If the user has more than one certificate, an error appears when

the user attempts to sign.

Note: If the signing user has more than one graphical signature, the first graphical

image will be used for visible signatures.

Validating Document Signatures

To validate document signatures:

1. In the Document Library screen, click the arrow to the right of the document name to display the list of document options (Figure 27).

2. Select Verify Signatures from the list of document options (Figure 27).

All signatures of the selected document are validated, and the current view of the document is updated.

Reviewing Document Signatures

To review document signatures:

1. In the Document Library screen, click the arrow to the right of the document name to display the list of document options (Figure 27).

2. Select Review Signatures. The Document Signatures screen appears.

Page 45: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

Using the CoSign for SharePoint Solution for Signing Documents and Items 4

41

Figure 29 Document Signatures Screen

The screen includes document identification and additional signature related information such as the signature status, signatures summary, and validation statuses of all the signatures of the selected item.

3. To view the signer’s certificate, click the linked name in the Signed By field.

Page 46: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

4 CoSign for SharePoint User Guide

42

Signing and Validating Items in Lists

Access a list in a SharePoint site. The All Items screen appears.

Figure 30 All Items Screen

For each item in the list, you can open the item option menu that enables you to perform several operations. The CoSign for SharePoint solution enables you to perform the following options:

Sign with CoSign – Enables you to sign the item. Refer to Signing Items.

Verify Signatures – Enables you to validate all signatures in the item. Refer to Validating

Item Signatures.

Review Signatures – Enables you to view all signatures content inside the item. Refer to Reviewing Item Signatures.

Page 47: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

Using the CoSign for SharePoint Solution for Signing Documents and Items 4

43

Figure 31 All Items Screen – CoSign for SharePoint Solution Options

Signing Items

To sign items:

1. In the All Items screen, click the arrow to the right of the item name to display the list of item options (Figure 31).

2. Select Sign With CoSign. The Sign with CoSign screen appears.

Note: If the signing user does not need to provide any input for the digital signature

operation, the Sign with CoSign screen (Figure 32) does not appear, and a digital

signature operation is immediately performed on the item.

Page 48: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

4 CoSign for SharePoint User Guide

44

Figure 32 Sign with CoSign Screen for an Item

The screen’s content is displayed according to the defined configurations.

3. Select the desired settings. The following fields may appear:

Reason for Signing – Depending on the settings defined in the list settings, a list of available reasons is displayed from which the user can select the appropriate reason for signing. Furthermore, depending on these settings, a field enabling users to manually enter a reason for signing may also be displayed.

User Name and Password – Depending on the settings defined and the type of environment (Active Directory, etc.) the user may be required to enter a user name and password, and possibly the extended password (the signature password ). For more information on the extended password, refer to Configuring at the SharePoint

Installation Level.

4. Click Sign.

After Signing an Item

If the digital signature is successful, you are directed to a new page according to the settings specified in the Post-Signing Redirection field (see Figure 21). If you redirected to the Default View, the digital signature attributes are displayed.

Note: The signing user must have only one certificate in the user’s account in the

CoSign appliance. If the user has more than one certificate, an error appears when

the user attempts to sign.

Page 49: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

Using the CoSign for SharePoint Solution for Signing Documents and Items 4

45

Validating Item Signatures

To validate item signatures:

1. In the All Items screen, click the arrow to the right of the item name to display the list of item options (Figure 31).

2. Select Verify Signatures.

All signatures of the selected item are validated, and the current view of the item is updated.

Reviewing Item Signatures

To review item signatures:

1. In the All Items screen, click the arrow to the right of the item name to display the list of item options (Figure 31).

2. Select Review Signatures. The List Item Signatures screen appears.

Figure 33 List Item Signatures Screen

The screen includes item identification and additional signature related information such as the signature status, signatures summary, and validation statuses of all the signatures of the selected item.

3. To view the signer’s certificate, click the linked name in the Signed By field.

Page 50: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

4 CoSign for SharePoint User Guide

46

Signing and Validating Entire Lists

You can perform the following operations on an entire list:

Sign all items in a list – Refer to Signing All List Items.

Verify all items in a list – Refer to Verifying All List Items.

Signing All List Items

To sign all items in a list:

1. In the List toolbar, open the Custom Commands menu and select Sign all List Items.

Figure 34 Sign All List Items and Verify All List Items

A screen similar to signing a single item appears (see Figure 32).

2. Specify the signature settings. For explanations of the fields appearing in the screen, refer to the explanations in Signing Items.

3. Click Sign

All items in the list are signed.

Verifying All List Items

To verify all items in a list:

In the List toolbar, open the Custom Commands menu (Figure 34) and select Verify all

List Items.

All signatures of all items in the list are validated, and the signature attributes of items in the list are refreshed.

Page 51: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

47

Chapter 5: Using the CoSign for SharePoint Solution as

a Custom Task in a Workflow

CoSign for SharePoint can also be used as a SharePoint Custom Task, which enables it to be integrated into a workflow. This enables workflow products based on Microsoft SharePoint (such as Nintex Workflow) to provide digital signature operations within the workflow used in the organization.

When a workflow is activated for a document, it usually passes through several employees or roles in the organization. Each action that an employee needs to perform is defined as a workflow task. If the purpose of the task is to sign the document, the task should be defined as a CoSign Signatures Task. To perform the task, the employee will be required to sign the document.

This chapter describes how the administrator can:

Activate CoSign for SharePoint as a custom task.

Configure a CoSign Signature task in a workflow.

The chapter also describes how an end user can:

Start a workflow.

Sign a document as part of a workflow.

Note: Before you can use CoSign for SharePoint as a custom task, you must first

install, deploy and configure the Cosign for SharePoint solution, as described in

Chapters 2 and 3.

Activating CoSign for SharePoint as a Custom Task

To configure CoSign for SharePoint as a custom task:

1. Go to the Site Collection Settings screen for the site, and click Features. The Features screen appears.

Page 52: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

5 CoSign for SharePoint User Guide

48

Figure 35 Site Collection Administration – Features Screen

2. Click Activate to activate the ARX CoSign Signature Tasks feature.

Configuring a CoSign Signature Task in a Workflow

A workflow procedure is defined in the document library environment. This section describes how to create a CoSign signature task in a Nintex workflow.

Note: For more information about Nintex workflows, refer to the Nintex

documentation.

Note: It is also possible to configure a workflow for an item in a list. For more

information, contact ARX support.

To create a Nintex workflow:

1. Click the Workflow menu in the document library options toolbar.

2. Select Create a Workflow in Nintex Workflow.

Page 53: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

Using the CoSign for SharePoint Solution as a Custom Task in a Workflow 5

49

Figure 36 Workflow – Create a Workflow in Nintex Workflow

3. Start performing the steps required for creating the workflow. At some point in the workflow definition, you will need to define a CoSign Signature task. This is what enables using CoSign for SharePoint as part of the workflow procedure.

In the case of a Nintex Workflow, create an Assign to-do task.

Page 54: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

5 CoSign for SharePoint User Guide

50

Figure 37 Assign To-do Task Screen

4. In the Content Type field:

a. Select Use existing.

b. Select CoSign Workflow Signature Task.

5. In the Signature Profile Name field, optionally specify which signature profile to use for this task. For example, if the task is that the head of the department must sign the document, but the document contains many signature fields, you can direct the head of the department to the specific signature field by selecting the signature profile of the relevant field. To specify a signature profile, enter it in the field to the right of the Value drop-down list.

Page 55: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

Using the CoSign for SharePoint Solution as a Custom Task in a Workflow 5

51

Note that when the end-user performs the signature task, information about the task outcome (signed, rejected, or error) and about the signer comment (reason for signing, or reason for rejecting) is kept, because it may influence what the next task should be. This information can be viewed in the All Tasks screen (Figure 41).

Starting a Workflow

A workflow for a document can be started in several ways, both automatically and manually. One of these mechanisms is described in this section.

To start a workflow:

1. In the document library environment, open the document options menu and select Workflows.

Figure 38 Document Options Menu – Selecting Workflows

The Workflows screen appears.

Page 56: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

5 CoSign for SharePoint User Guide

52

Figure 39 Workflows Screen

2. In the Workflows screen, click to select a workflow.

Workflow controls appear (Figure 40), enabling you to start the workflow.

Figure 40 Control Workflow Screen

3. Click Start to start the workflow.

Page 57: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

Using the CoSign for SharePoint Solution as a Custom Task in a Workflow 5

53

Signing a Document as Part of a Workflow

Whenever a user is requested to sign a document as part of a workflow, the user is automatically sent an email which provides a link to the relevant task.

You can also view all current tasks by selecting Tasks in the document library’s left panel. The All Tasks screen appears (Figure 41), displaying all tasks and their status.

Figure 41 All Tasks Screen

To sign a document as part of a workflow:

1. Click the edit task link in the email informing you of the signing task.

Or

Click the signing task in the All Tasks screen (Figure 41)

The Sign with CoSign screen appears (Figure 42). The screen is very similar to the one that appears when signing a document (Figure 28).

Page 58: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

5 CoSign for SharePoint User Guide

54

Figure 42 Sign with CoSign Screen

2. If in the task definition (Figure 37) a specific profile was defined, that profile name is displayed in the Signature Profile Name field, and you cannot change it. Usually, the signature profile directs the signer to the intended signature field in the document.

If a signature profile was not defined, a Signature Profiles drop-down list is displayed, similar to the one that appears when signing a regular document (refer to Signing

Documents). Select a signature profile from the list.

3. Depending on the settings defined in the document library or content type, a list of available reasons is displayed in the Reason for Signing field, from which you can select the appropriate reason for signing. Depending on these settings, a field enabling users to manually enter a reason for signing may also be displayed.

4. Depending on the settings defined in the document library or content type, you may need to enter a username or password in the User Name and Password field.

5. You can optionally reject a signature operation. If you decide to reject, it is recommended to enter the reason for the rejection. Enter the reason, and then click Reject.

Page 59: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

Using the CoSign for SharePoint Solution as a Custom Task in a Workflow 5

55

6. If you do not reject the signature operation, click Sign.

Note: If you click the link for a signing task, but the task was already completed, a

signature review screen is displayed, similar to the screen displayed in Figure 29 .

Page 60: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying
Page 61: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

57

Index

—A— Applications supported by CoSign, 2 Authenticating data, requirements, 1 Authentication mode, specifying, 16

—B— Backing up CoSign configuration, 33

—C— Configuring CoSign for SharePoint, 15

activating at site level, 18 at the SharePoint installation level, 15 backing up the configuration, 33 configuring content type settings, 22 configuring document libraries, 19 configuring lists, 30 enabling ticket-based signatures, 17 restoring the configuration, 34

Content type defining a signature profile, 25 defining CoSign settings, 22 inheriting signature profiles from a document

template, 28 CoSign

applications that work with CoSign, 2 components, 3

CoSign appliances CoSign Central Enterprise, 4 CoSign Central FIPS, 4 CoSign Central SSCD, 4 CoSign Central Starter, 4 overview, 4

CoSign Central Enterprise appliance, description, 4 CoSign Central FIPS appliance, description, 4 CoSign Central SSCD appliance

description, 4 CoSign Central Starter appliance, description, 4 CoSign client

optimizing for CoSign for SharePoint, 8 version supporting CoSign for SharePoint, 7

CoSign Documentation, 3 CoSign for SharePoint

backing up, 33 configuring, 15 deploying, 10 installing, 9 restoring, 34 retracting deployment, 13 uninstalling, 14

using as a workflow task, 47 CoSign for SharePoint as a custom task

activating, 47 introduction, 47

CoSign signature task activating the feature, 47 adding in a workflow, 49 viewing task outcome, 53

Credentials expiration feature, 16

—D— Data authentication systems, 1 Deploying CoSign for SharePoint

using CLI, 11 using GUI, 10 verifying deployment, 11

Document post-signing behavior, 40 reviewing signatures, 40 signing, 38 signing, as part of a workflow, 53 validating signatures, 40 viewing signer’s certificate, 41

Document library configuring which information to display, 29 CoSign options, 37 defining content type settings, 22 defining CoSign settings, 19 reviewing document signatures, 40 signing a document, 38 validating document signatures, 40

—E— Extended password configuration, 16

—I— Installing CoSign for SharePoint, 9 Intended audience, 4 Introduction to

CoSign, 2 CoSign for SharePoint, 7

Item post-signing behavior, 44 reviewing signatures, 45 signing, 43 validating signatures, 45 viewing signer’s certificate, 45

—K— Kerberos authentication, enabling, 17

Page 62: CoSign for SharePoint User Guide - DocuSign · 1 CoSign for SharePoint User Guide 2 ... the end user’s private key is considered more ... –Chapter 2: Installing and Deploying

CoSign for SharePoint User Guide

58

—L— List

CoSign options, 46 defining CoSign settings, 30 signing all items, 46 verifying all items, 46

List Item CoSign options, 42 reviewing item signatures, 45 reviewing signer’s certificate, 45 signing, 43 validating item signatures, 45

—O— Overview of CoSign, 1

—P— Prior knowledge, 4

—R— Restoring CoSign configuration, 34 Retracting CoSign for SharePoint deployment, 13

—S— SessionStateModule, 17 SharePoint 2010 requirements, 17 SharePoint server, accessing using https, 37 Signature profile

deleting, 28 updating, 27

Signature profile creation

creating new, 25 loading existing profiles from a document

template, 28 Signing digitally in SharePoint, 37 Site settings

activating CoSign at the site level, 18

—T— Ticket-based signatures, enabling, 17

—U— Uninstalling CoSign for SharePoint, 14

—V— Validating document signatures, 40 Validating item signatures, 45 Validating signatures of all items in a list, 46 Verifying deployment, 11

—W— Workflow

adding a CoSign signature task, 49 creating, 48 signing a document as part of a workflow, 53 starting, 51

Workflow task activating the CoSign signature task, 47 creating, 49 signing a document, 53 viewing task outcome, 53