Skip to main content
Version: Axidian CertiFlow 7.1

Middleware

With Axidian CertiFlow Middleware you can manage cards in Axidian CertiFlow.

info

To use Axidian CertiFlow Middleware, install card and reader drivers and other service tools on user workstations. This software is not included in the Axidian CertiFlow installation package.

Install Middleware on Windows

Different card types require different Axidian CertiFlow Middleware files.

Run the AxidianCertiFlow.<card type name>.Middleware.<version number>.en-us.msi file from the AxidianCertiFlow.Client catalog of the Axidian CertiFlow installation package and follow the wizard instructions.

The following table shows which Axidian CertiFlow Middleware file corresponds to each manufacturer and card model.

ManufacturerCard modelMiddleware file
ACSACOS5-64AxidianCertiFlow.ACOS.Middleware-<version number>.en-us.msi
AvestAvest Key 256AAxidianCertiFlow.Avest.Middleware-<version number>.en-us.msi
AxidianAirCard virtual smart cardAxidianCertiFlow.AirCard.Middleware-<version number>.en-us.msi
Bit4idID-One CosmoAxidianCertiFlow.Bit4Id.Middleware-<version number>.en-us.msi
CRYPTASTicTok V2/V3AxidianCertiFlow.TicTok.Middleware-<version number>.en-us.msi
CryptovisionePasslet Suite v3.0, JCOP V3.0AxidianCertiFlow.Cryptovision.Middleware-<version number>.en-us.msi
FeitianePass2003 (A1+, A2)
BioPass2003
AxidianCertiFlow.ePass.Middleware-<version number>.en-us.msi
HIDCrescendo C1150 Series
Crescendo C1300 Series
Crescendo C2300 Series
AxidianCertiFlow.HID.Middleware-<version number>.en-us.msi
MicrosoftLocal Computer Certificate Store
User Certificate Store
AxidianCertiFlow.Registry.Middleware-<version number>.en-us.msi
TPM Virtual Smart Card (Microsoft VSC)AxidianCertiFlow.TPM.Middleware-<version number>.en-us.msi
Windows Hello for Business (WHfB)AxidianCertiFlow.WHfB.Middleware-<version number>.en-us.msi
RSARSA SecurID 800AxidianCertiFlow.RSA.Middleware-<version number>.en-us.msi
Thales (SafeNet and Gemalto)SafeNet eToken PRO 32k
SafeNet eToken PRO 64k
eToken PRO Java 72K OS755
SafeNet eToken 5105
SafeNet eToken 5110
IDCore30B eToken 1.7.7
AxidianCertiFlow.eToken.Middleware-<version number>.en-us.msi
IDPrime MD 830 FIPS
IDPrime MD 830B FIPS
IDPrime MD 840B
IDPrime 930
IDPrime 930nc
IDPrime 940
IDPrime 940B
IDPrime MD 3810
IDPrime MD 3811
IDPrime 3930
IDPrime 3940
IDPrime 3940 FIDO
SafeNet eToken 5300
SafeNet eToken Fusion
SafeNet eToken Fusion CC
SafeNet eToken 5110 CC (940)
AxidianCertiFlow.IDPrime.Middleware-<version number>.en-us.msi
YubicoYubiKey 5 SeriesAxidianCertiFlow.YubiKey.Middleware-<version number>.en-us.msi

Install Middleware on Linux

To install Axidian CertiFlow Middleware, run the following command.

Debian
sudo dpkg -i certiflow.middleware_<version number>_amd64.deb
RHEL
sudo rpm -i certiflow.middleware-<version number>.x86_64.rpm

Axidian CertiFlow for Linux supports SafeNet eToken cards using a single Middleware component.

ManufacturerCard model
Thales (SafeNet и Gemalto)SafeNet eToken PRO 32k
SafeNet eToken PRO 64k
eToken PRO Java 72K OS755
SafeNet eToken 5105
SafeNet eToken 5110
IDCore30B eToken 1.7.7

Install Middleware browser extension

Install the Axidian CertiFlow Middleware browser extension on administrator, operator, and user workstations for access to Axidian CertiFlow web applications.

Google Chrome, Chromium

  1. Launch your browser and navigate to the extensions page: chrome://extensions for Google Chrome and Chromium.
  2. Open the AxidianCertiFlow.Client-v<version number>\certiflow.middleware.chrome.extension catalog.
  3. Upload the CRX file in the browser's extensions page.
  4. Click Add extension in the pop-up window.

Mozilla Firefox

  1. Launch your browser and navigate to the add-ons page: about:addons.
  2. Click and select Install Add-on from file….
  3. Upload the certiflow.middleware-1.0.xpi file from the AxidianCertiFlow.Client-<version number>\certiflow.middleware.chrome.extension catalog and click Open.
  4. Click Add in the pop-up window..

Configure Registry cards support

Configure Registry cards support using Windows Group Policies or the Windows Registry (for workstations outside a Windows domain).

To enable Axidian CertiFlow users to issue Registry cards in the Self-Service and write the certificates to the Local Computer Certificate Store or User Certificate Store, configure a Group Policy Object (GPO). This procedure installs the necessary administrative templates and applies the policy to the user workstations.

  1. Copy the contents of the AxidianCertiFlow.Client\Misc\ catalog to your central ADMX file store. The standard location on a domain controller is C:\Windows\SYSVOL\domain\Policies\PolicyDefinitions.

    info

    If you use a local ADMX store instead, copy the files to C:\Windows\PolicyDefinitions.

  2. Open the Group Policy Management console.

  3. In the console tree, create a new GPO or select an existing GPO that applies to the target user workstations.

  4. Right-click the GPO and select Edit.

  5. In the Group Policy Management Editor, go to Computer ConfigurationPoliciesAdministrative TemplatesAxidian CertiFlowClient.

  6. Enable the following policies:

    • Enable 'Registry' card (Machine) to issue certificates to the Local Computer Certificate Store.
    • Enable 'Registry' card (User) to issue certificates to the User Certificate Store
  7. Link the edited GPO to the Organizational Unit (OU) or security group that contains the workstations of the Axidian CertiFlow users.

  8. Select Apply.

  9. Force a policy update on the target workstations or wait for the next refresh cycle.