Configuring the FIPS 140 Hardware
F5 Networks, Inc., Platform Guide
2 - 3
4. When the sw-init utility prompts you for the Administrator Cards,
we recommend that you type 2 for the total number, and 1 for the
required number. This creates a cardset that requires only one card
to be present for card or module management, but also provides the
other card as a backup of the first.
Figure 2.4 demonstrates the proper orientation of the smart card
before you insert it into the card reader.
For more information about card sets, please refer to the nCipher
manual, Key management user guide, Chapter 6: Managing cards.
This manual is included on the Software and Documentation CD.
5. Move the M-O-I switch to O (Figure 2.1) and, with the paperclip,
press the reset button (Figure 2.2)
6. Generate keys by running genconf and then genkey. For detailed
information, see Using the key utilities to generate keys, on page
2-11.
7. After you generate the keys, your next task depends on what type of
system you are configuring:
• If this is a single unit, after you create the the security world, you
can configure the SSL Accelerator. For more information, see
Additional configuration options, on page 2-14.
• If this is a primary unit in a redundant system, complete the tasks
described in the section Configuring the security world on the
second unit in a redundant system, on page 2-5.
Figure 2.1 This figure shows the M-O-I switch on the FIPS 140 security
module
Summary of Contents for 520
Page 1: ...Platform Guide 520 540 MAN 0067 00...
Page 2: ......
Page 4: ...ii...
Page 5: ...Table of Contents...
Page 6: ......
Page 8: ...Table of Contents iv...
Page 10: ......
Page 30: ......
Page 46: ......
Page 50: ...Chapter 3 3 4...
Page 51: ...Glossary...
Page 52: ......
Page 56: ...Glossary Glossary 4...
Page 57: ...Index...
Page 58: ......
Page 61: ......