To establish a connection with the ICG, every device must authenticate with the ICG. For this purpose, a first-authentication key must be generated. On the first contact with the ICG, the device must present this key. You have the following possibilities to generate first-authentication keys:

  • One-time keys that can be used by any random device, but cannot be re-used by any other device. Hence, the number of keys must match the number of devices.
  • One-time keys that can only be used by specified devices and will be invalidated after use.
  • Multiple-time keys that can be used by any device and will remain valid after use.

Once the keys for initial authentication are created, you can continue with Transferring the First-Authentication Keys to the Devices.

Creating One-Time Keys for Random Devices

  1. Go to UMS Administration > Global Configuration > Cloud Gateway Options.
  2. Click .
  3. Select Create new one-time keys.
  4. Enter the Quantity of one-time passwords you want to generate.
  5. Click OK.

    One or more new entries appear in the list, depending on the value entered under Quantity.

Creating One-Time Keys for Specific Devices

  1. Go to UMS Administration > Global Configuration > Cloud Gateway Options.
  2. Click .
  3. Select Create new one-time keys associated with a device.
  4. Choose a method to add one or more thin client unit IDs:
    • Add: Enter a Unit ID manually and click Add.
    • Select: Click Select and select thin clients with .
    • Import: Click Import and select a CSV file with unit IDs. For instructions on how to create a list of unit IDs, see Creating a Unit ID List for IGEL OS.
  5. Click OK.

    If everything went well, a success message is shown.
  6. Confirm the message.
    One or more new entries appear in the list.
  7. Select the new entries and click Icon Exportieren to export the keys.
  8. Under Look in:, choose a file path on your USB stick.
  9. Enter a File Name, e. g. icg.xml
  10. Under Files of Type, choose either "XML" or "HTML" as the file format.
  11. Click Save.

Creating a New Mass-Deployment Key for Arbitrary Devices

  1. Connect a USB stick to the machine on which the UMS Console is running.
  2. Go to UMS Administration > Global Configuration > Cloud Gateway Options.
  3. Click .
  4. Select Create new mass-deployment key.
  5. Activate or deactivate Generate random mass-deployment key to choose the method of key generation:

    The key is generated by the UMS.

    You can enter a key of your own in the entry field.

  6. Click OK.
    One or more new entries appear in the list.
  7. Select the new entries and click Icon Exportieren to export the keys.
  8. Under Look in:, choose a file path on your USB stick.
  9. Enter a File Name, e. g. icg.xml
  10. Under Files of Type, choose either "XML" or "HTML" as the file format.
  11. Click Save.

Manually created E-Mail or Printed Letter

  1. Go to UMS Administration > Global Configuration > Cloud Gateway Options.
  2. In the list First-authentication passwords, select the desired password entries and click Icon Kopieren to copy the credentials to the clipboard.
    The data required for connecting a device to the ICG is in the clipboard: host address, ICG server certificate fingerprint, and the password.
  3. To send the credentials via e-mail, paste the data into an encrypted e-mail. To send the credentials in a printed letter, paste the data in your e-mail program or word processor.