beautypg.com

Brocade Network Advisor SAN + IP User Manual v12.3.0 User Manual

Page 1122

background image

1050

Brocade Network Advisor SAN + IP User Manual

53-1003155-01

Creating a new encryption group

25

Password: The key vault password. This field is active for ESKM/SKM and TEKA key vaults.
For ESKM/SKM, it is needed only for the primary key vault. For TEKA, it is needed for both
the primary and secondary key vaults.

Re-type Password: Re-enter the password for verification.

Backup Key Vault: (Optional.) The secondary key vault, either an IPv4 address or Host
name. The backup address can be left blank.

Backup Certificate File: (Optional.) If a backup key vault is entered, the backup certificate
file must also be entered. Navigate to and select the secondary public key certificate from
your desktop, if applicable.

Serial Number: (TKLM only.) Serial number of the switch, which is required for registering
the switch on the key vault.

Device Group: (TKLM only.) The name of the device group of which the switch is a member.
This information is required for registering the switch on the key vault.

8. Select the Key Vault Type. Configuration options vary based on the key vault type you choose.

To complete the wizard steps, proceed to the section that describes your particular key vault
type.

-

For DPM key vault setting instructions, see

“Configuring key vault settings for RSA Data

Protection Manager (DPM)”

on page 1050.

-

For LKM/SSKM key vault setting instructions, see

“Configuring key vault settings for

NetApp Link Key Manager (LKM/SSKM)”

on page 1056.

-

For ESKM/SKM key vault setting instructions, see

“Configuring key vault settings for HP

Enterprise Secure Key Manager (ESKM/SKM)”

on page 1062.

-

For TEKA key vault setting instructions, see

“Configuring key vault settings for Thales

e_Security keyAuthority (TEKA)”

on page 1066.

-

For TKLM key vault setting instructions, see

“Configuring key vault settings for IBM Tivoli

Key Lifetime Manager (TKLM)”

on page 1071.

-

For KMIP key vault setting instructions, see

“Configuring key vault settings for Key

Management Interoperability Protocol”

on page 1076.

Configuring key vault settings for RSA Data Protection
Manager (DPM)

The following procedure assumes you have already configured the initial steps in the Configure
Switch Encryption wizard. If you have not already done so, go to

“Creating a new encryption group”

on page 1045.

Figure 428

shows the key vault selection dialog box for DPM.