Open a Connection
30
First Login & Changing Password
31
Set System Date and Time
33
Configure IP and Network Parameters
35
Make Your Network Connection
37
Generate a New HSM Server Certificate
39
CHAPTER 3
HSM Initialization
42
Initializing a Password-Authenticated HSM
44
Initializing a Password Authenticated HSM
44
Initializing a PED-Authenticated HSM
46
Recover the SRK
46
Re-split[ see 'resplit' ] the SRK
48
Other Uses of the SRK
48
Initializing a PED-Authenticated HSM
48
Preparing to Initialize a Luna SA HSM [PED-version]
49
Why Initialize?
50
Start a Serial Terminal or SSH session
51
Initialize the HSM
51
Initialization - some additional options and description
62
CHAPTER 4
HSM Capabilities and Policies
67
Set HSM Policies (Password Authentication)
67
Set HSM Policies - PED (Trusted Path) Authentication
69
CHAPTER 5
Creating a Partition on the HSM
72
Prepare to Create a Partition (Password Authenticated)
72
About HSM Partitions on the Initialized HSM
72
Create the Partition [PW]
73
Partition creation audit log entry
74
Next steps
74
Prepare to Create a Partition (PED Authenticated)
75
About HSM Partitions on the Initialized HSM
75
Create (Initialize) the Partition - PED Authenticated
76
Partition creation audit log entry
84
Record the Partition Client Password (PED-Auth HSMs)
85
CHAPTER 6
Partition Policies
88
Set Partition Policy
89
Policy setting example, Luna HSM with Password Authentication
90
Policy setting example, Luna HSM with PED Authentication
90
CHAPTER 7
Prepare the Client for Network Trust Link
91
Preparing the Client
91
Import a Server Cert
92
Prepare a Network Trust Link - Windows
93
Import HSM Appliance Server Certificate onto Client (Windows)
93
Register the HSM Server Certificate with the Client (Windows)
95
Luna SA Configuration Guide
Release 5.4.1 007-011136-007 Rev C July 2014 Copyright 2014 SafeNet, Inc. All rights reserved.
4