Black Box ET0100A, ET1000A manual Deploying Policies, Setting Deployment Confirmation Preferences

Models: EncrypTight ET0100A ET0010A ET1000A

1 352
Download 352 pages 21.02 Kb
Page 207
Image 207

Creating Distributed Key Policies

To verify policies:

1Click Tools > Verify policies. ETPM displays a confirmation message indicating the results of the rules check.

2If the policies contain errors, go to the Policy View to locate them. Expand the policy tree to find the component with the configuration error. Double-click the component with the error to view the editor

and find the entry with the configuration error. You can mouse over the to view a message describing the error.

Deploying Policies

Policy deployment is the distribution of policies created in the Policy Manager (ETPM) to the appropriate Key Management Systems (ETKMSs) which in turn generate the keys and distribute the policies to the appropriate Policy Enforcement Points (PEPs).

Once the policies have been created and saved, deploy the policies by clicking Deploy. Note that you cannot selectively deploy a specific policy. When you click Deploy, all policies are sent to the ETKMSs.

As soon as you deploy the policies, the Policy view status indicators change to yellow momentarily. Once the policies are successfully deployed, the status indicators change to green. For more information on status indicators, see Table 37.

When you deploy policies, any errors cause the entire deployment to fail. No policies are deployed to the ETKMSs even if only one policy has an error.

You cannot deploy policies that contain configuration errors in any of the policy components. If you attempt to do so, an error message appears with the text: “Policy Deployment is not allowed while configuration errors exist.” Expand the policy tree to locate the component with the configuration error. Double-click the component with the error to view the editor and find the entry with the configuration

error. You can mouse over the to view a message describing the error. Correct the problem and then retry.

Setting Deployment Confirmation Preferences

Since the deployment of policies can cause a brief interruption of traffic on the PEPs’ data ports, the ETPM displays a confirmation each time you click Deploy . You can disable this prompt.

To enable or disable the deployment warning:

1From the ETPM main menu bar, click Edit > Preferences.

2In the Preferences window, expand the ETPM listing and select Confirmation.

208

EncrypTight User Guide

Page 207
Image 207
Black Box ET0100A, ET1000A, ET0010A Deploying Policies, Setting Deployment Confirmation Preferences, To verify policies