Skip to main content

Installing Secure Release on Ricoh Printers

The ScrewDrivers Secure Release app runs on the printer itself. When a user taps their badge at the printer, the app opens a list of that user's held jobs from your release server and prints whichever one they choose. This page walks through preparing the app package, installing it on a Ricoh printer, and, if you're using the certificate-validating version of the app, installing your CA certificate on the printer. Repeat the install for each printer.

Beta feature

Secure Release is available as a beta feature starting in ScrewDrivers 7.10, for Enterprise edition. The beta supports Ricoh printers. See Setting Up ScrewDrivers Secure Release for the full deployment walkthrough.

Before you begin​

  • The ScrewDrivers Secure Release zip file from your account team or Tricerat Support. It contains two files: the app (ScrewDriversSecureRelease.apk) and its configuration file (ScrewDriversSecureRelease.dalp).
  • The release server's address: its fully qualified domain name (FQDN), or its IP address if you're using the standard version of the app or created the server certificate with the -addIP switch. See Creating Secure Release Certificates for the difference between the two app versions.
  • Administrator credentials for the printer's Web Image Monitor.
  • A badge or card reader connected to the printer.
  • For the certificate-validating version only: the exported CA certificate (.cer file) on an SD card the printer can read.
  • The printer's serial number entered on its printer object in ScrewDrivers Administration, so the release server can match badge taps at this device to the right printer.

Step 1: Configure the app package​

  1. Unzip the ScrewDrivers Secure Release zip file.

  2. Open ScrewDriversSecureRelease.dalp in a text editor and find the line containing SecureReleaseAddress. Enter your release server's address between the tags:

    <SecureReleaseAddress>release.example.com</SecureReleaseAddress>

    Use the FQDN wherever you can. An IP address works with the standard version of the app, or with the certificate-validating version if the server certificate was created with -addIP.

  3. Optional: if your release server listens on a port other than the default, find the line containing SecureReleasePort and change it:

    <SecureReleasePort>5286</SecureReleasePort>
  4. Save the file, then zip ScrewDriversSecureRelease.apk and ScrewDriversSecureRelease.dalp back into a single zip file. Both files go at the top level of the zip, not inside a folder.

You only need to prepare the package once; the same zip installs on every printer that uses that release server.

Step 2: Install the app through Web Image Monitor​

  1. In a browser, go to the printer's IP address to open Ricoh's Web Image Monitor, and log in as an administrator.
  2. Select Device Management > Configuration.
  3. Under Extended Feature Settings, select Install.
  4. Select Local File, click Choose File, and choose the zip file you prepared.
  5. Click Display Extended Feature List.
  6. Select ScrewDrivers Secure Release and click Install.

When the install finishes, the ScrewDrivers Secure Release app appears on the printer's operation panel.

Step 3: Install the CA certificate on the printer​

Skip this step if you're using the standard version of the app.

The certificate-validating version checks the release server's certificate against the CA certificate you exported in Creating Secure Release Certificates. Install that certificate on the printer:

  1. Insert the SD card containing the .cer file into the printer.
  2. On the printer, open System Settings and go to the Settings for Administrator tab.
  3. Select Security, then Credential Storage, and select User.
  4. Click Install, select the .cer file from the SD card, and click Install.

Step 4: Verify​

Print a document from a session to a printer assigned to your test user, then open the ScrewDrivers Secure Release app on that printer and tap the user's badge. The held job appears in the list; tap Print Document to release it.

If the list stays empty or the app can't connect, work through these in order:

  • The address is wrong or unreachable. Confirm the printer can resolve and reach the address in the .dalp file on the configured port. See Ports and Firewall Rules.
  • The certificate isn't trusted (certificate-validating version). Make sure the CA certificate is installed on the printer, and that the server certificate covers the name or IP address you put in the .dalp file.
  • The serial number doesn't match. The Serial Number on the printer object in ScrewDrivers Administration must match the serial number the printer reports.
  • The badge isn't recognized. The user ID on the Secure Release tab in Administration must match the ID the card reader reports for that badge.

Once one printer works, install the same zip on the rest.