ctconf -b
<CertificateName>
-j aal2sdk.signed
6. Type the admin PIN.
13.2.3. Creating SafeNet Storage Data Keys
After installing a SafeNet Hardware Security Module, you will need to create a secret key to use as the IDENTIKEY
Appliance storage data key.
Use the SafeNet Key Management Utility to create a sensitive data key. This requires an administrator login to the
token. Note the token label and key label used.
When creating a SafeNet storage key, the following key attributes are required:
n
double or triple DES
n
sensitive enabled
n
exportable optional, if key backup in use
n
encrypt enabled
n
wrap and unwrap enabled
n
private optional
n
All other options disabled
13.2.4. Creating SafeNet Sensitive Data Keys
After installing a SafeNet Hardware Security Module and creating a SafeNet storage key, you will need to create a
sensitive data key.
Use the SafeNet Key Management Utility to create a sensitive data key. This requires an administrator login to the
token, and can be created in the same or different slot to the storage key created earlier. Note the token label and
key label used.
This key should have the following attributes:
n
AES
n
128-bit
n
derive
n
sensitive
n
encrypt enabled
n
decrypt enabled
Other attribute settings are optional.
13. Hardware Security Module
IDENTIKEY Appliance 3.11.12 - Installation and Maintenance Guide
78