HP 8/80 Fabric OS Encryption Administrator's Guide v6.4.0 (53-1001864-01, June - Page 42

Steps for connecting to an SKM appliance

Page 42 highlights

2 Steps for connecting to an SKM appliance Steps for connecting to an SKM appliance The SKM management web console can be accessed from any web browser with Internet access to the SKM appliance. The URL for the appliance is as follows: https://: Where: - is the hostname or IP address when installing the SKM appliance. - is 9443 by default. If a different port number was specified when installing the SKM appliance, use that port number. The following configuration steps are performed from the SKM management web console and from the Management application. • Configure a Brocade group on SKM. • Register the Brocade group user name and password on the encryption node. • Set up a local Certificate Signing Authority (CA) on SKM. • Download the CA certificate. • Create and install an SKM server certificate. • Enable an SSL connection. • Configure a cluster of SKM appliances for high availability. • Export and sign the encryption node certificate signing requests. • Import the signed certificates into the encryption node. These steps are described in more detail in the following sections. 24 Fabric OS Encryption Administrator's Guide 53-1001864-01

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248

24
Fabric OS Encryption Administrator’s Guide
53-1001864-01
Steps for connecting to an SKM appliance
2
Steps for connecting to an SKM appliance
The SKM management web console can be accessed from any web browser with Internet access to
the SKM appliance. The URL for the appliance is as follows:
https://<appliance hostname>:<appliance port number>
Where:
-
<appliance hostname>
is the hostname or IP address when installing the SKM appliance.
-
<appliance port number>
is 9443 by default. If a different port number was specified
when installing the SKM appliance, use that port number.
The following configuration steps are performed from the SKM management web console and from
the Management application.
Configure a Brocade group on SKM.
Register the Brocade group user name and password on the encryption node.
Set up a local Certificate Signing Authority (CA) on SKM.
Download the CA certificate.
Create and install an SKM server certificate.
Enable an SSL connection.
Configure a cluster of SKM appliances for high availability.
Export and sign the encryption node certificate signing requests.
Import the signed certificates into the encryption node.
These steps are described in more detail in the following sections.