Configuring key vault settings for rsa data, Protection manager (dpm) – Brocade Network Advisor SAN + IP User Manual v12.1.0 User Manual
Page 981
Brocade Network Advisor SAN + IP User Manual
927
53-1002949-01
Creating a new encryption group
25
-
For ESKM/SKM key vault setting instructions, see
“Configuring key vault settings for HP
Enterprise Secure Key Manager (ESKM/SKM)”
-
For TEKA key vault setting instructions, see
“Configuring key vault settings for Thales
e_Security keyAuthority (TEKA)”
-
For TKLM key vault setting instructions, see
“Configuring key vault settings for IBM Tivoli
-
For KMIP key vault setting instructions, see
“Configuring key vault settings for Key
Management Interoperability Protocol”
Configuring key vault settings for RSA Data Protection Manager (DPM)
The following procedure assumes you have already configured the initial steps in the Configure
Switch Encryption wizard. If you have not already done so, go to
“Creating a new encryption group”
Figure 355
shows the key vault selection dialog box for DPM.
FIGURE 355
Select Key Vault dialog box for DPM
1. Enter the IP address or host name for the primary key vault. If you are clustering DPM
appliances for high availability, IP load balancers are used to direct traffic to the appliances.
Use the IP address of the load balancer.
2. Enter the name of the file that holds the Primary Key Vault’s CA Key Certificate or browse to the
desired location. This file can be generated from the key vault’s administrative console.
3. If you are implementing encryption on data replication LUNs used by the EMC Symmetrix
Remote Data Facility (SRDF), you must select Enabled for REPL Support.
4. Click Next.
The Specify Certificate Signing Request File Name dialog box displays. (Refer to
Figure 356
.)