payShield 10K Installation and User Guide
©Thales Group
Page 418
All Rights Reserved
Generate Customer Trust Authority (XI)
Variant
Key Block
Online
Offline
Secure
Authorization:
Not required
Command:
XI
Function:
Generates the Customer Trust Authority and stores them on smartcards.
Authorization:
The HSM must be in Secure state to run this command.
Inputs:
•
Country
•
State
•
Locality
•
Organization
•
Organizational Unit
•
Common Name
•
•
Number of private shares
•
Number of shares needed to recover private key
Outputs:
•
None
Example 1
:
Secure>
XI
<Return>
Please enter the certificate Subject information:
Country Name (2 letter code) [US]:
US
<Return>
State or Province Name (full name) []:
Florida
<Return>
Locality Name (eg, city) []:
Plantation
<Return>
Organization Name (eg, company) []:
Thales
<Return>
Organizational Unit Name (eg, section) []:
Production
<Return>
Common Name (e.g. server FQDN or YOUR name) [CTA]:
CTA
<Return>
Email Address []:
<Return>
Enter number of Customer Trust Authority private key
shares [3-9]:
3
<Return>
Enter number of shares to recover the Customer Trust
Authority private key [3-3]:
3
<Return>
Issued to: CTA, Issued by: CTA
Validity : Jan 9 10:28:49 2015 GMT to Jan 3 10:28:49
2040 GMT
Unique ID: EE3CB7CE8343B464CC04278188CF7EB3 - 3DE05514
(Root)
Insert payShield Manager Smartcard 1 of 3 and press
ENTER:
<Return>
Enter new PIN for smartcard:
******
<Return>
Re-enter new PIN:
******
<Return>
Working....
CTA share written to smartcard.
Insert payShield Manager Smartcard 2 of 3 and press
ENTER:
<Return>
Enter new PIN for smartcard:
******
<Return>
Re-enter new PIN:
******
<Return>
Working....