beautypg.com

Copying the local ca certificate, Adding skm appliances to the cluster, 45 adding skm appliances to the cluster – HP Secure Key Manager User Manual

Page 45: Copying the local ca, Certificate

background image

1.

From the SKM management console, click the Device tab.

2.

In the Device Configuration menu, click Cluster.

3.

Type the cluster password in the Create Cluster section of the main window to create the new
cluster.

4.

If required, change the Local Port. HP recommends using the default value of 9001.

5.

Click the Create button.

6.

In the Cluster Settings section of the window, click Download Cluster Key and save the key to a
convenient location, such as your computer's desktop.

The cluster key is a text file and is only required temporarily. It may be deleted from your
computer's desktop after all SKM appliances have been added to the cluster.

Copying the Local CA certificate

Before an SKM appliance can be added to a cluster, the Local CA certificate from an SKM already
in the cluster must be installed onto the new SKM appliance.

To copy the Local CA certificate:

1.

If you do not have a browser window open from

Creating the cluster

, log into the SKM

management console of one of the existing cluster members.

2.

Click the Security tab.

3.

In the Certificates & CAs menu, click Local CAs.

4.

Click on the name of the local CA from the Local Certificate Authority List section of the screen.
This is the name of the CA created in

Setting up the local Certificate Authority (CA)

, steps 3 —

4. For example,

SKM Local CA

.

5.

Copy the certificate data from the CA Certificate Information, from

-----BEGIN CERTIFICATE

REQUEST-----

to

-----END CERTIFICATE REQUEST--–––

. Be careful to exclude extra

carriage returns or spaces after the data. This certificate data will be transferred to the other SKM
appliances in

Copying the Local CA certificate

.

6.

Keep this browser window open while adding appliances to the cluster in the next section.

Adding SKM appliances to the cluster

To add SKM appliances to the cluster, perform the following steps on each additional appliance.

1.

Open a new browser window, keeping the browser window from

Copying the Local CA certificate

open.

Secure Key Manager

45