HP manual HP Enterprise Secure Key Manager Eskm integration

Page 10

If you generated a new certificate, you must sign the new certificate in the Sign Library Certificate screen. Follow the instructions on the screen to sign the certificate in the ESKM web interface and then paste it into the ESKM Certificate pane. After pasting the signed certificate, click Next.

8.The ESKM Information screen displays prerequisites for using the ESKM. When the pre-requisites have been met, click Next.

9.In the ESKM Tier Selection screen you can group ESKM devices into tiers so the library will attempt to connect with ESKM devices in the top tier first, and then failover to connect with ESKM devices in a lower priority tier if necessary. For example, you might put ESKM devices in the same data center as the library in Tier 1 with ESKM devices in remote data centers in Tiers 2 and 3.

One tier is used by default. To add a tier, click Add Tier.

Enter the IP address or fully-qualified hostname and port number for up to six ESKM devices in each tier. To verify access to the ESKM devices, click Connectivity Check.

When the tier configuration is complete, click Next.

10 HP Enterprise Secure Key Manager (ESKM) integration

Image 10
Contents Abstract Warranty Contents Introduction Using an encryption key serverHP Enterprise Secure Key Manager Eskm Licensing Considerations for using an encryption key serverMedia compatibility for drives supporting encryption KMIP-based key serversInstalling the encryption license MSL6480Using the Eskm Wizard HP Enterprise Secure Key Manager Eskm integrationHP Enterprise Secure Key Manager Eskm integration Page HP Enterprise Secure Key Manager Eskm integration Page Creating the client user name and password on the server KMIP-based key server integrationConfiguring the Kmip feature for the MSL6480 Using the Kmip Wizard Configuring the Kmip feature for the MSL6480 KMIP-based key server integration Set or enter the Kmip security password Enrolling the autoloader or library with a Kmip serverEntering the Kmip client credentials Generating the client certificate requestInstalling the signed client certificate Signing the client certificate on the server---END Certificate Configuring access to the key servers Enabling KMIP-based encryptionKMIP-based key server integration Connectivity test MSL6480Autoloader and other MSL libraries Basic encryption test Failover testPage Contacting HP Support and other resourcesTypographic conventions Documentation feedback