
Brocade Network Advisor SAN User Manual
729
53-1003154-01
Steps for connecting to an ESKM/SKM appliance
20
Enabling SSL on the Key Management System (KMS) Server
The KMS Server provides the interface to the client. Secure Sockets Layer (SSL) must be enabled
on the KMS Server before this interface will operate. After SSL is enabled on the first appliance, it
will be enabled automatically on the other cluster members.
To configure and enable SSL, complete the following steps:
1. Select the Device tab.
2. In the Device Configuration menu, click KMS Server to display the Key Management Services
Configuration window.
3. In the KMS Server Settings section of the window, click Edit.
4. Configure the KMS Server Settings. Ensure that the port and connection timeout settings are
9000 and 3600, respectively. For Server Certificate, select the name of the certificate you
created in
“Creating and installing the ESKM/SKM server certificate”
on page 727.
5. Click Save.
Creating an ESKM/SKM High Availability cluster
The HP ESKM/SKM key vault supports clustering of HP ESKM/SKM appliances for high availability.
If two ESKM/SKM key vaults are configured, they must be clustered. If only a single ESKM/SKM
appliance is configured, it may be clustered for backup purposes, but the backup appliance will not
be directly used by the switch. The procedures in this section will establish a cluster configuration
on one ESKM/SKM appliance and then transfer that configuration to the remaining appliances.
•
Create the cluster on one ESKM/SKM appliance that is to be a member of the cluster.
•
Copy the local CA certificate from the first ESKM/SKM appliance or an existing cluster
member.
•
Paste the local CA certificate into the management console for each of the ESKM/SKM
appliances added to the cluster.
To create a cluster, complete the following steps on one of the HP ESKM/SKM appliances that is to
be a member of the cluster:
1. From the ESKM/SKM management console, click the Device tab.
2. In the Device Configuration menu, click Cluster.
The Create Cluster section displays.
3. Select and note the Local IP address. You will need this address when you add an appliance to
the cluster.
4. For Local Port, use the default value of 9001 unless you are explicitly directed to use a
different value for your site.
5. Type the cluster password in the Create Cluster section of the main window to create the new
cluster, then click Create.
6. In the Cluster Settings section of the window, click Download Cluster Key and save the key to a
convenient location, such as your computer's desktop. The cluster key is a text file and is only
required temporarily. It may be deleted from your computer's desktop after all ESKM/SKM
appliances have been added to the cluster.
Summary of Contents for Network Advisor 12.3.0
Page 4: ...iv Brocade Network Advisor SAN User Manual 53 1003154 01...
Page 86: ...34 Brocade Network Advisor SAN User Manual 53 1003154 01 Uninstalling a patch 2...
Page 190: ...138 Brocade Network Advisor SAN User Manual 53 1003154 01 Fabric tracking 4...
Page 216: ...164 Brocade Network Advisor SAN User Manual 53 1003154 01 User profiles 5...
Page 612: ...560 Brocade Network Advisor SAN User Manual 53 1003154 01 Exporting Host port mapping 13...
Page 620: ...568 Brocade Network Advisor SAN User Manual 53 1003154 01 Exporting storage port mapping 14...
Page 720: ...668 Brocade Network Advisor SAN User Manual 53 1003154 01 Security configuration deployment 17...
Page 744: ...692 Brocade Network Advisor SAN User Manual 53 1003154 01 Configuring Virtual Fabrics 19...
Page 1068: ...1016 Brocade Network Advisor SAN User Manual 53 1003154 01 Removing thresholds 24...
Page 1098: ...1046 Brocade Network Advisor SAN User Manual 53 1003154 01 Swapping blades 25...
Page 1176: ...1124 Brocade Network Advisor SAN User Manual 53 1003154 01 SAN connection utilization 28...
Page 1378: ...1326 Brocade Network Advisor SAN User Manual 53 1003154 01 Event logs 32...
Page 1448: ...1396 Brocade Network Advisor SAN User Manual 53 1003154 01 Upload failure data capture 34...
Page 1490: ...1438 Brocade Network Advisor SAN User Manual 53 1003154 01 SAN shortcut menus A...
Page 1494: ...1442 Brocade Network Advisor SAN User Manual 53 1003154 01 Call Home Event Tables B...
Page 1524: ...1472 Brocade Network Advisor SAN User Manual 53 1003154 01 About Roles and Access Levels D...
Page 1552: ...1500 Brocade Network Advisor SAN User Manual 53 1003154 01 Regular Expressions F...
Page 1920: ...1868 Brocade Network Advisor SAN User Manual 53 1003154 01 Views H...