46
Novell Access Manager 3.1 SP2 Identity Server Guide
n
ov
do
cx (e
n)
16
Ap
ril 20
10
7b
To restart the nfast client:
Linux:
Enter the following command:
/opt/nfast/sbin/init.d-nfast restart
Windows:
Enter the following commands:
C:\nfast\bin>net stop "nfast server"
C:\nfast\bin>net start "nfast server"
8
Configure communication to the remote file system server. In this sample configuration, the
remote file system is installed on a Windows machine.
8a
At the remote file system server, enable communication with the Identity Server. For a
Windows machine, enter the following command:
C:\nfast\bin\rfs-setup.exe --gang-client --write-noauth
<address>
Replace
<address>
with the IP address of the Identity Server.
8b
At the Identity Server, enable communication with the remote file system server. For
nCipher, enter the following command:
Linux:
/opt/nfast/bin/rfs-sync --setup --no-authenticate
<address>
Windows:
C:\nfast\bin>rfs-sync --setup --no-authenticate
<address>
Replace
<address>
with the IP address of the remote file system server.
8c
At the Identity Server, initialize synchronization with the remote file system server.
Linux:
Enter the following commands:
/opt/nfast/bin/rfs-sync –-update
/opt/nfast/bin/rfs-sync –-commit
Windows:
Enter the following commands:
C:\nfast\bin>rfs-sync --update
C:\nfast\bin>rfs-sync --commit
The first command reads updates from the remote file system server and downloads files
to the
/opt/nfast/kmdata/local
directory on Linux and the
C:\nfast\kmdata\local
directory on Windows. The second command writes local
changes to the remote file system server.
9
Continue with
“Creating the nCipher Signing Key Pair” on page 46
.
Creating the nCipher Signing Key Pair
IMPORTANT:
Because of Access Manager configuration conflicts, you need to use a netHSM
client other than the Identity Server. The remote file system server is a netHSM client, or if you have
configured another device as a client, you can use that device.
The following commands are specific to nCipher; it does not come with a tool to generate a key pair
and CSR. nCipher also uses a unique keystore of type
nCipher.sworld
.
nCipher supports both a Windows and a Linux netHSM client.
If you have a Windows netHSM client, the command is located in the following directory:
c:\Program Files\Java\jdk1.5.0_14\jre\bin\java
Summary of Contents for ACCESS MANAGER 3.1 SP2 - README 2010
Page 4: ...4 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 12: ...12 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 158: ...158 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 172: ...172 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 182: ...182 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 290: ...290 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 362: ...362 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 374: ...374 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...