HP Enterprise Secure Key Manager manual Signing the client certificate on the server

Page 19

Signing the client certificate on the server

NOTE: These instructions are for the SafeNet KMIP server. If you are using a different server, consult your server documentation for instructions.

1.Log into the SafeNet KMIP server and select the Security tab.

2.In the CAs & SSL Certificates area select Local CAs.

3.Click Sign Request.

The Sign Certificate Request screen appears.

4.Enter the request information and then click Sign Request.

Sign with Certificate Authority — Verify that the desired Certificate Authority is selected.

Certificate Purpose — Select Client.

Certificate Duration (days) — Enter the desired duration.

Certificate Request — Paste the certificate request obtained from the autoloader or library RMI. See “Generating the client certificate request” (page 18).

The result will be the signed client certificate, which will be used in “Installing the signed client certificate” (page 19).

Installing the signed client certificate

Install the client certificate in the Configuration: Security page.

Configuring the KMIP feature for the 1/8 G2 Tape Autoloader and other MSL Tape Libraries 19

Image 19
Contents Abstract Warranty Contents Introduction Using an encryption key serverHP Enterprise Secure Key Manager Eskm KMIP-based key servers Considerations for using an encryption key serverMedia compatibility for drives supporting encryption LicensingMSL6480 Installing the encryption licenseHP Enterprise Secure Key Manager Eskm integration Using the Eskm WizardHP Enterprise Secure Key Manager Eskm integration Page HP Enterprise Secure Key Manager Eskm integration Page KMIP-based key server integration Creating the client user name and password on the serverConfiguring the Kmip feature for the MSL6480 Using the Kmip Wizard Configuring the Kmip feature for the MSL6480 KMIP-based key server integration Enrolling the autoloader or library with a Kmip server Set or enter the Kmip security passwordGenerating the client certificate request Entering the Kmip client credentialsSigning the client certificate on the server Installing the signed client certificate---END Certificate Enabling KMIP-based encryption Configuring access to the key serversKMIP-based key server integration MSL6480 Connectivity testAutoloader and other MSL libraries Failover test Basic encryption testPage Contacting HP Support and other resourcesTypographic conventions Documentation feedback