Copying the local ca certificate, Adding skm appliances to the cluster, 45 adding skm appliances to the cluster – HP Secure Key Manager User Manual
Page 45: Copying the local ca, Certificate
1.
From the SKM management console, click the Device tab.
2.
In the Device Configuration menu, click Cluster.
3.
Type the cluster password in the Create Cluster section of the main window to create the new
cluster.
4.
If required, change the Local Port. HP recommends using the default value of 9001.
5.
Click the Create button.
6.
In the Cluster Settings section of the window, click Download Cluster Key and save the key to a
convenient location, such as your computer's desktop.
The cluster key is a text file and is only required temporarily. It may be deleted from your
computer's desktop after all SKM appliances have been added to the cluster.
Copying the Local CA certificate
Before an SKM appliance can be added to a cluster, the Local CA certificate from an SKM already
in the cluster must be installed onto the new SKM appliance.
To copy the Local CA certificate:
1.
If you do not have a browser window open from
, log into the SKM
management console of one of the existing cluster members.
2.
Click the Security tab.
3.
In the Certificates & CAs menu, click Local CAs.
4.
Click on the name of the local CA from the Local Certificate Authority List section of the screen.
This is the name of the CA created in
Setting up the local Certificate Authority (CA)
, steps 3 —
4. For example,
SKM Local CA
.
5.
Copy the certificate data from the CA Certificate Information, from
-----BEGIN CERTIFICATE
REQUEST-----
to
-----END CERTIFICATE REQUEST--–––
. Be careful to exclude extra
carriage returns or spaces after the data. This certificate data will be transferred to the other SKM
appliances in
Copying the Local CA certificate
6.
Keep this browser window open while adding appliances to the cluster in the next section.
Adding SKM appliances to the cluster
To add SKM appliances to the cluster, perform the following steps on each additional appliance.
1.
Open a new browser window, keeping the browser window from
Copying the Local CA certificate
open.
Secure Key Manager
45