User GuideIM C2000/C2500/C3000/C3500/C4500/C5500/C6000 series

When Other Messages Are Displayed

Note

  • When confirming or changing the settings in [Settings], press [Home] (Operation panel screen illustration) after closing [Settings].

Message

Cause

Solution and reference

“Administrator Authentication for User Management must be set to on before this selection can be made.”

The User Management privilege is disabled in the administrator authentication management.

Configure the User Management privilege in the following setting items to specify Basic, Windows, or LDAP authentication.

  • Settings screen type: Standard

    [Settings][System Settings][Settings for Administrator][Authentication/Charge][Administrator Authentication/User Authentication/App Auth.][Administrator Authentication Management]

  • Settings screen type: Classic

    [Settings][Machine Features Settings][System Settings][Administrator Tools] tab [Administrator Authentication Management]

    Registering Administrators Before Using the Machine

“Destination list / machine settings are updated. Selected destinations or function settings have been cleared. Please re-select the settings.”

A destination is being registered and devices are being configured using Web Image Monitor.

Wait until the message disappears and do not turn off the power of the machine. You may not be able to perform operations for a while depending on the number of destinations being registered.

“Failed to read the PDF file.”

The user attempted to display a PDF file that is not supported by the Web browser of the machine.

The Web browser of the machine supports the PDF versions and encryption levels shown below. Other PDF files cannot be displayed.

  • PDF version: 1.3-1.7

  • PDF encryption level: 128-bit AES, 256-bit AES

“Firmware update will start. Press [OK]. It will start automatically after 30 seconds.”

A firmware update is available, and the machine is about to perform an update.

It is recommended to apply the update, but you can stop the updating process by pressing [Stop] within 30 seconds after the message is displayed.

Do not turn off the power of the machine while the updating process is in progress.

“Internal cooling fan is active.”

The fan installed in the vent for cooling the interior of the machine became active after a large number of pages has been printed.

You may hear a rotating noise while the fan is active, but you can continue using the machine as usual.

“Output Tray is full. Remove paper.”

The output tray is full.

Remove the paper from the output tray. When the finisher tray is specified as the output destination, press [Stop] to pause printing and then remove the output paper to prevent paper from falling off the tray.

“Problems with the wireless board. Please call service.”

The Wireless LAN board can be accessed, but an error has been detected.

Turn off the power of the machine, check that the Wireless LAN board is correctly installed in the machine, and then turn on the power.

Turning On and Off the Power

If the message persists even after you have turned the power off and then on, consider repairing the machine.

“Updating the destination list... Please wait. Specified destination(s) or sender's name has been cleared.”

A destination is being registered using Web Image Monitor.

Wait until the message disappears and do not turn off the power of the machine. You may not be able to perform operations for a while depending on the number of destinations being registered.

“Updating the destination list has failed.”

“Try again?”

A network error occurred.

Check the connection between the machine and the computer.

Anti-virus software or a firewall function is running on the computer.

Add the destination list program to the exception list in the anti-virus software on the computer, or register the machine IP address to the exception list in the firewall function. You can check the IP address in [Check Status] "Network".

“You do not have the privileges to use this function.”

The logged-in user does not have the privileges to use the specified function.

Consult the user administrator. The user administrator can change the access permissions in the address book.

Preventing Information Leaks

Changing the setting is not allowed under the administrative privileges granted to the logged-in user.

Check the administrative privilege required for changing the specified setting.

Registering Administrators Before Using the Machine

Messages Displayed When Machine Login Fails

Check the error code displayed with the “Authentication has failed.” message, and taken the necessary action.

Note

  • The letter at the beginning of the error code indicates the type of authentication specified on the machine.

    • B: Basic authentication

    • W: Windows authentication

    • L: LDAP authentication

Message

Cause

Solution and reference

“Authentication has failed.”

B/W/L0103-000

An operation in the TWAIN supporting application was performed from the computer while a user was logged in to the machine or performing the login procedure.

Check whether another user is logged in to the machine, and then perform the operation.

“Authentication has failed.”

B/W/L0104-000

An incorrect password was entered.

Enter the correct password.

The Driver Encryption Key is not registered correctly in the TWAIN driver.

Consult the network administrator whether the Driver Encryption Key is required, and configure the driver accordingly.

Specifying Login Information in the Printer Driver

Specifying Login Information in the LAN-Fax Driver

The network administrator can check the setting of Driver Encryption Key in the following setting items.

  • Settings screen type: Standard

    [Settings][System Settings][Settings for Administrator][Security][Extended Security Settings]

  • Settings screen type: Classic

    [Settings][Machine Features Settings][System Settings][Administrator Tools] tab [Extended Security]

“Authentication has failed.”

B/W/L0206-002

An incorrect login user name or password was entered.

Enter the correct login user name and password.

A user has attempted to log in to the functions that can be accessed only by the administrator such as [Settings] when [Application Authentication Management] is specified.

The user needs to log in from the application login screen.

“Authentication has failed.”

B/W/L0206-003

":" or another character that cannot be used in a login user name was entered.

  • Enter the correct login user name.

  • Change the user name if it contains a space, ":" or other unusable characters.

“Authentication has failed.”

B/W/L0207-001

Web Image Monitor or another method was used to edit or create a backup of the address book.

Wait a while.

“Authentication has failed.”

B/W/L0208-000

B/W/L0208-002

The account is locked because the number of failed login attempts has exceeded the limit.

Request the user administrator to unlock the account.

“Authentication has failed.”

L0307-001

Web Image Monitor or another method was used to edit or create a backup of the address book.

Try again later.

“Authentication has failed.”

W0400-102

Kerberos authentication has failed because the server was not responsive.

Check whether the server is operating normally.

“Authentication has failed.”

W0400-200

Available resources are insufficient due to too many authentication requests.

Try again later.

“Authentication has failed.”

W0400-202

sAMAccountName was used as the login user name when a user in the child domain logged in under a parent-child domain environment, and ldap_bind failed.

Use UserPrincipalName as the login user name.

The SSL settings specified on the authentication server and the device do not match.

Check whether the SSL settings specified on the authentication server and the device match.

“Authentication has failed.”

L0400-210

The login name attribute is not specified, or an attribute on which the information cannot be obtained is specified.

Check whether [Login Name Attribute] is specified correctly.

Verifying Users to Operate the Machine (User Authentication)

“Authentication has failed.”

W/L0406-003

":" or other characters that cannot be used in a login user name was entered.

  • Enter the correct login user name.

  • Change the user name if it contains a space, ":" or other unusable characters.

“Authentication has failed.”

W0406-101

Too many requests for authentication occurred at one time.

Try again later. If the problem persists, check whether the machine is under an authentication attack. The attack status can be checked by the screen message, in the system log, or in the e-mail notification sent to the administrator.

“Authentication has failed.”

W0406-107

A user group cannot be obtained.

Check whether the group name registered on the machine is correct and whether the DC settings are configured correctly.*1

Kerberos Authentication has failed.

Check whether the realm name registered on the clock at the KDC (key distribution center) and the clock of the device are synchronized.*3

No connection is established to the authentication server.

Check that you can establish communication by entering the server IP address in the following setting items.

  • Settings screen type: Standard

    [Settings][System Settings][Network/Interface][Ping Command]

  • Settings screen type: Classic

    [Settings][Machine Features Settings][System Settings][Interface Settings] tab [Ping Command]

The domain name is incorrect or cannot be resolved.

Check whether the domain name registered on the machine is correct and whether the name can be resolved.*2

The login user name or password is incorrect.

Check the login user name and/or password of the user registered on the server.

“Authentication has failed.”

L0406-200

Too many requests for authentication occurred at one time.

Try again later. If the problem persists, check whether the machine is under an authentication attack. The attack status can be checked by the screen message, in the system log, or in the e-mail notification sent to the administrator.

“Authentication has failed.”

L0406-201

[Off] is specified in the authentication settings of the LDAP server.

Set Authentication to a setting other than [Off] in the following setting items.

  • Settings screen type: Standard

    Select the server in [Settings][System Settings][Settings for Administrator][Authentication/Charge][Administrator Authentication/User Authentication/App Auth.][Register/Change/Delete LDAP Server], and then press [Register/Change]

  • Settings screen type: Classic

    [Settings][Machine Features Settings][System Settings][Administrator Tools] tab [Program / Change / Delete LDAP Server]

“Authentication has failed.”

L0406-202

L0406-203

The LDAP authentication settings or LDAP server settings are incorrect.

Check whether the LDAP authentication settings or LDAP server settings are correctly configured.*4

Check whether the SSL settings are supported on the LDAP server.

The login user name or password is incorrect.

Enter the correct login user name and password. Change the login user name if it exceeds 128 bytes in length or contains a space, ":" or other unusable character.

The simplified authentication mode is incorrectly used.

Check whether the server name, login user name, password, and information entered into the search filter are correct. Note that authentication cannot be performed if obtaining DN of the login user name under the representative account fails in the simple authentication mode.

“Authentication has failed.”

L0406-204

Kerberos Authentication has failed.

Check whether the realm name registered on the clock at the KDC (key distribution center) and the clock of the device are synchronized.*3

“Authentication has failed.”

W/L0409-000

There was no response returned from the authentication server, and an authentication timeout error occurred.

Check the status of the network and the server to use for authentication.

“Authentication has failed.”

W/L0511-000

W0517-000

The user registered on the machine has the same name as another user distinguished by the unique attribute of the authentication server.

  • Delete the older user that is redundant, or change the login name.

  • If the message is displayed after switching the authentication server, delete the user on the old server.

“Authentication has failed.”

W/L0606-004

A user name that cannot be specified in the login user name was specified.

Do not use "other", "admin", "supervisor", or "HIDE*" in user account names.

“Authentication has failed.”

W/L0607-001

Web Image Monitor or another method was used to edit or create a backup of the address book.

Wait a while.

“Authentication has failed.”

W/L0612-005

The number of users registered in the address book has reached the upper limit, and auto-registration failed.

Ask the user administrator to delete users that are no longer needed from the address book.

“Authentication has failed.”

W/L0707-001

Web Image Monitor or another method was used to edit or create a backup of the address book.

Wait a while.

“Authentication has failed.”

B/W/L09XX-019

Auto-registration of a user on the server machine has failed when authentication was performed on the client machine using Central Management.

  • Check the network communication between the client and server machines.

  • Registration cannot be performed while the address book of the server machine is being edited.

*1 When obtaining user groups, check the following:

  • The user account that can obtain user groups is sAMAccountName (user). Do not use UserPrincipalName (user@domain.xxx.co.jp) as the user name.

  • Check whether the name of "Group" is correctly specified including the case-sensitivity in the following setting items.

    • Settings screen type: Standard

      [Settings][System Settings][Settings for Administrator][Authentication/Charge][Administrator Authentication/User Authentication/App Auth.][User Authentication Management][Windows Authentication]

    • Settings screen type: Classic

      [Settings][Machine Features Settings][System Settings][Administrator Tools] tab [User Authentication Management][Windows Auth.]

  • Select the user in the address book, press [Edit], and then check that [User Management / Others] tab [User Management][Available Functions / Applications] check box is cleared.

  • Check whether "Global Scope" is specified as the scope of the group in a property for the user group created in DC, and the group type specified in "Security". Also check whether an account is registered to the user group that has been created. If more than one DC exists, check whether a trust relationship between DCs is established.

*2 To resolve the domain name, see the following:

  • Check whether the following setting item is set correctly.

    • Settings screen type: Standard

      [Settings][System Settings][Network/Interface][Domain Name Configuration] and [DNS Configuration] or [WINS Configuration]

    • Settings screen type: Classic

      [Settings][Machine Features Settings][System Settings][Interface Settings] tab [Domain Name] and [DNS Configuration] or [WINS Configuration]

  • Specify an IP address in [Domain Name Configuration] ([Domain Name]) and test whether a connection can be established if all settings are correctly set. If authentication by IP address is possible, check [DNS Configuration] or [WINS Configuration] again.

  • If authentication by IP address is not possible, check whether LM/NTLM is set to be denied in the domain controller security policy or domain security policy. Also check that the port is not closed in the firewall between the device and the domain controller or in the firewall settings of the domain controller. When the Windows firewall is enabled, create a new rule that allows communication on port 137 and port 139 in "Advanced" of the Windows firewall. Open the TCP/IP properties from the network connection properties, select the "Enable NetBIOS Over TCP/IP" check box on the [Advanced] [WINS] tab, and open port 137.

*3 For Kerberos authentication, check the following:

  • Settings screen type: Standard

    • Check whether "Realm Name", "KDC Server Name", and "Domain Name" are set correctly in the following setting items. Enter "Realm Name" in upper case.

      [Settings][System Settings][Settings for Administrator][Authentication/Charge][Administrator Authentication/User Authentication/App Auth.][Register/Change/Delete Realm]

    • Configure the setting so that the difference in time between the clocks on KDC and device is less than five minutes. The machine clock can be set in the following setting items.

      [Settings][System Settings][Date/Time/Timer][Date/Time][Set Time]

  • Settings screen type: Classic

    • Check whether "Realm Name", "KDC Server Name", and "Domain Name" are set correctly in the following setting items. Enter "Realm Name" in upper case.

      [Settings][Machine Features Settings][System Settings][Administrator Tools] tab [Program / Change / Delete Realm]

    • Configure the setting so that the difference in time between the clocks on KDC and device is less than five minutes. The machine clock can be set in the following setting items.

      [Settings][Machine Features Settings][System Settings][Timer Settings] tab [Set Time]

  • Kerberos authentication fails if auto-obtaining of KDC in Windows authentication fails. When auto-obtaining cannot be activated, switch to manual.

*4 For LDAP settings, check the following:

  • Settings screen type: Standard

    • Check whether the correct LDAP server is selected, and "Login Name Attribute" is registered correctly in the following setting items.

      [Settings][System Settings][Settings for Administrator][Authentication/Charge][Administrator Authentication/User Authentication/App Auth.][User Authentication Management][LDAP Authentication]

    • Check that the representative account is registered in the following setting items, and then execute [Connection Test].

      Select the server in [Settings][System Settings][Settings for Administrator][Authentication/Charge][Administrator Authentication/User Authentication/App Auth.][Register/Change/Delete LDAP Server], press [Register/Change] and set [Authentication] to [Kerberos Authentication]

      Programming the LDAP Server

    • If the connection test fails, check whether [Domain Name Configuration] and [DNS Configuration] or [WINS Configuration] are specified correctly in the following setting items.

      [Settings][System Settings][Network/Interface]

  • Settings screen type: Classic

    • Check that the representative account is registered in the following setting items, and then execute [Connection Test].

      [Settings][Machine Features Settings][System Settings][Administrator Tools] tab [User Authentication Management][LDAP Auth.] and Login Name Attribute is registered correctly.

    • Check that the representative account is registered in the following setting items, and then execute [Connection Test].

      [Settings][Machine Features Settings][System Settings][Administrator Tools] tab [Program / Change / Delete LDAP Server] (select the server) "Authentication" "Kerberos Authentication"

      Programming the LDAP Server

    • If the connection test fails, check whether [Domain Name] and [DNS Configuration] or [WINS Configuration] are specified correctly in the following setting items.

      [Settings][Machine Features Settings][System Settings][Interface Settings] tab

Messages Displayed When Logging in to the Machine Using an IC Card Fails

Message

Cause

Solution and reference

“Authentication has failed.”

*0150-401

The card is locked because the number of times an incorrect PIN code was entered exceeds the limit.

Unlock the card.

“Authentication has failed.”

*0151-401

An incorrect PIN code was entered.

Enter the correct PIN.

“Authentication has failed.”

*0153-402

The card authentication device has been removed or is not connected properly.

Connect the card authentication device again. Connect the card authentication device to the USB2.0 Interface Type A on the back left side of the machine.

“Authentication has failed.”

*0154-402

Reading of an IC card has failed.

Set the IC card on the authentication device correctly and for a longer duration.

“Authentication has failed.”

*0156-401

An incorrect user name or password was entered.

Enter the correct user name and password.

“The card authentication device is not connected.”

The card authentication device has been removed or is not connected properly.

Connect the card authentication device again. Connect the card authentication device to the USB2.0 Interface Type A on the back left side of the machine.

A malfunction is temporarily occurring on the machine.

Turn off the power of the machine, wait for 10 seconds or more after confirming that the main power indicator is turned off, and then turn on the power.

Turning On and Off the Power

Messages Displayed When the LDAP Server Is Unavailable

Message

Cause

Solution and reference

“Connection with LDAP server has failed. Check the server status.”

The network is busy.

Try again.

The setting information is incorrect.

Check the configuration information of the LDAP server in the following setting items.

  • Settings screen type: Standard

    [Settings][System Settings][Settings for Administrator][Authentication/Charge][Administrator Authentication/User Authentication/App Auth.][Register/Change/Delete LDAP Server]

    Registering the LDAP Server

  • Settings screen type: Classic

    [Settings][Machine Features Settings][System Settings][Administrator Tools] tab [Program / Change / Delete LDAP Server]

    Programming the LDAP Server

“Exceeded time limit for LDAP server search. Check the server status.”

The network is busy.

Try again.

The setting information is incorrect.

Check the configuration information of the LDAP server in the following setting items.

  • Settings screen type: Standard

    [Settings][System Settings][Settings for Administrator][Authentication/Charge][Administrator Authentication/User Authentication/App Auth.][Register/Change/Delete LDAP Server]

    Registering the LDAP Server

  • Settings screen type: Classic

    [Settings][Machine Features Settings][System Settings][Administrator Tools] tab [Program / Change / Delete LDAP Server]

    Programming the LDAP Server

"Follow Referrals on LDAP Server" is set to [Active] when Active Directory of the Windows server is used for LDAP Authentication.

  • Settings screen type: Standard

    Change [Settings][System Settings][Settings for Administrator][Authentication/Charge][Administrator Authentication/User Authentication/App Auth.][LDAP Search] "Follow Referrals on LDAP Server" to [Inactive]

“LDAP server authentication has failed. Check the settings.”

The user name or password is incorrect.

Select the user in the address book, press [Edit], and specify the correct user name and password in [User Management / Others] tab [User Management][LDAP Authentication Info].

Registering a User in the Address Book and Specifying the Login Information

Messages Displayed When There Is a Problem with the Certificate

Message

Cause

Solution and reference

“The destination cannot be selected because the device certificate used for the S/MIME signature is not currently valid.”

The device certificate used for the S/MIME signature is not currently valid.

Install a new device certificate used for the S/MIME signature.

Encrypting Network Communication

“Signature cannot be set because there is a problem with the Digital Signature's device certificate. Check the device certificate.”

“Signature cannot be set because the Digital Signature's device certificate is not currently valid.”

The device certificate used for the digital signature in PDF or PDF/A is not currently valid.

Use a valid device certificate for the digital signature in PDF or PDF/A.

Scanning an Original as a PDF with Security Setting Specified

“The destination cannot be selected because there is a problem with the device certificate used for the S/MIME signature. Check the device certificate.”

The device certificate used for the digital signature in PDF or PDF/A is missing or invalid.

“The destination cannot be selected because its encryption certificate is not currently valid.”

The user certificate (destination certificate) has expired.

Install a new user certificate.

Encrypting Network Communication

“The group destination cannot be selected because it contains a destination with a encryption certificate that is not currently valid.”

“Transmission cannot be performed because the encryption certificate is not currently valid.”

Messages Displayed When an Application Site Cannot Be Used

Message

Cause

Solution and reference

“A server error has occurred.”

An unexpected error has occurred on the server.

“Cannot connect to server which installs applications. Check maintenance information on Information screen or network settings.”

Cannot connect to the installation server.

“Could not update the firmware.”

“Failed to download the application”

“Failed to install the application because an error has occurred.”

“Could not restore the firmware because the required data does not exist.”

The firmware from Application Site has not been updated.

The firmware cannot be recovered.

“JavaTM Platform has not been started. Install the application after JavaTM Platform has been started from Web Image Monitor.”

JavaVM is not running.

Log in to Web Image Monitor in the administrator mode, and enable "JavaTM Platform" in [Device Management][Configuration][Extended Feature Settings].

To enable this setting, you must install an optional VM card in the machine.

“The specified page cannot be found.”

An error has occurred in Application Site.

See the server maintenance information in [Information].

“There is insufficient space to store internally, delete any unnecessary applications.”

The remaining free space on the hard disk is insufficient.

Delete applications that are not necessary.