Hp Secure Key Manager Manuel d'utilisateur Page 60

  • Télécharger
  • Ajouter à mon manuel
  • Imprimer
  • Page
    / 327
  • Table des matières
  • DEPANNAGE
  • MARQUE LIVRES
  • Noté. / 5. Basé sur avis des utilisateurs
Vue de la page 59
5. Click Join Cluster.
NOTE:
After joining the cluster, you will be prompted to synchronize with an existing cluster
member. We recommend that you synchronize your device. For more information about
this process, please see Synchronizing With a Cluster Member.
6. Delete the cluster key from the local le system on your workstation.
Synchronizing with a cluster member
To synchronize with a cluster member:
1. Log in to the Management Console that will be updated as an administrator with Cluster access
control.
2. Navigate to the Cluster Members section of the Cluster Conguration page (Device > Cluster).
3. Select the server from which you will copy conguration settings.
4. Click Synchronize With and conrm this action. As part of the synchronization, the KMS Server will
create an automatic synchronization backup before installing the new conguration.
CAUTION:
Synchronizing the local device with the cluster overwrites the existing conguration, which
may include keys. You can access overwritten information using the synchronization
backup. If you have any keys that only exist on the local device, you can use the backup
and restore features to copy them to another SKM before synchronizing the local device.
Setting up SSL in a cluster
When using SSL in a cluster, the replication settings must include KMS Server settings and all cluster
members must use a server certicate with the same name, as indicated on the KMS Server Settings
section. The contents of those server certicates, however should be unique.
To cong
ure SSL for a cluster:
1. Log in t
o the Management Console as an administrator with Certicate access control.
2. Navig
ate to the Create Certicate Request section on the Certicate and CA Conguration page
(Device > Cluster).
3. Create a certicate request.
4. Repea
t steps 1, 2, and 3 for each device in the cluster. Use the same name for each certicate
request.
5. Sign all of the certicate requests with the same CA. You can use a local CA on one of your devices,
or an
other CA within your organization’s PKI.
6. Inst
all each signed certicate on the appropriate device.
7. Sel
ect an SKM with conguration settings that you can push out to other cluster members.
8. Log in to that device’s Management Console as an administrator with KMS Server access control.
9. Navigate to the KMS Server Settings section on the Key Management Services Conguration page.
10. Select Use SSL and set Server Certicate to the newly created certicate.
11 . Navigate to the Cluster Settings section on the Cluster Conguration page.
12. Click Save and conrm your changes. Once you conrm the settings, they will be replicated to the
o
ther cluster members. No automatic synchronization backup will occur.
60
Performing conguration and operation tasks
Vue de la page 59
1 2 ... 55 56 57 58 59 60 61 62 63 64 65 ... 326 327

Commentaires sur ces manuels

Pas de commentaire