572
Brocade Network Advisor SAN User Manual
53-1002696-01
Steps for connecting to a TKLM appliance
20
Creating a self-signed certificate for TKLM
You must create a self-signed certificate for TKLM that can be downloaded to the Fabric OS
encryption engines to verify the authenticity of TKLM.
1. Select Tivoli Key Lifecycle Manager > Configuration.
The Configuration page displays.
2. Select Create self-signed certificate.
3. Under Certificate label in key store, enter a certificate label.
4. Under Certificate description (common name), enter a descriptive name.
5. Under Validity period of new certificate, enter the desired life time for the certificate.
6. Select Tivoli Key Lifecycle Manager > Advanced Configuration > Server Certificates to verify
that the certificate label is listed on Administer Server Certificates under Certificates.
7. Reboot the TKLM server.
Importing the Fabric OS encryption node KAC certificates to TKLM
The KAC certificates previously exported from the Fabric OS encryption nodes to an external LINUX
host must now be imported into the TKLM server file system. You must import the KAC certificate
in .der format. To do this, refer to
“Converting the KAC certificate format”
on page 571.
1. Import the KAC certificate from the external host into the TKLM server file system using a
binary file transfer mechanism using FTP, USB, or SCP.
2. Select Tivoli Key Lifecycle Manager > Advanced Configuration > Client Certificates.
The Client Certificates page displays.
3. Select Import > SSL Certificate.
The Import SSL Certificates for Clients page displays.
4. Enter the Fabric OS KAC certificate name in the Certificate field.
5. Under File name and location, enter or browse to the location where the imported KAC
certificate is stored, then select Trust.
6. Click Import.
7. Verify that the imported certificate is valid and active.
Exporting the TKLM self-signed server certificate
The TKLM self-signed server certificate must be exported in preparation for importing and
registering the certificate on a Fabric OS encryption group leader node.
1. Enter the TKLM server wsadmin CLI.
For Linux (in ./wsadmin.sh):
<installed directory>/IBM/tivoli/tiptklmV2/bin/wsadmin.sh -username TKLMAdmin
-password <password> -lang jython
Содержание Network Advisor 12.0.0
Страница 36: ...xxxvi Brocade Network Advisor SAN User Manual 53 1002696 01...
Страница 82: ...34 Brocade Network Advisor SAN User Manual 53 1002696 01 License downgrade 2...
Страница 86: ...38 Brocade Network Advisor SAN User Manual 53 1002696 01 Uninstalling a patch 3...
Страница 122: ...74 Brocade Network Advisor SAN User Manual 53 1002696 01 VM Manager discovery 4...
Страница 184: ...136 Brocade Network Advisor SAN User Manual 53 1002696 01 Fabric tracking 5...
Страница 214: ...166 Brocade Network Advisor SAN User Manual 53 1002696 01 User profiles 6...
Страница 236: ...188 Brocade Network Advisor SAN User Manual 53 1002696 01 Searching for an assigned event filter 7...
Страница 284: ...236 Brocade Network Advisor SAN User Manual 53 1002696 01 User defined performance monitors 8...
Страница 320: ...272 Brocade Network Advisor SAN User Manual 53 1002696 01 Grouping on the topology 9...
Страница 336: ...288 Brocade Network Advisor SAN User Manual 53 1002696 01 Microsoft System Center Operations Manager SCOM plug in 10...
Страница 434: ...386 Brocade Network Advisor SAN User Manual 53 1002696 01 Port Auto Disable 12...
Страница 442: ...394 Brocade Network Advisor SAN User Manual 53 1002696 01 Exporting Host port mapping 13...
Страница 450: ...402 Brocade Network Advisor SAN User Manual 53 1002696 01 Exporting storage port mapping 14...
Страница 536: ...488 Brocade Network Advisor SAN User Manual 53 1002696 01 Virtual FCoE port configuration 16...
Страница 552: ...504 Brocade Network Advisor SAN User Manual 53 1002696 01 Security configuration deployment 17...
Страница 878: ...830 Brocade Network Advisor SAN User Manual 53 1002696 01 Removing thresholds 24...
Страница 922: ...874 Brocade Network Advisor SAN User Manual 53 1002696 01 VLAN routing 26...
Страница 990: ...942 Brocade Network Advisor SAN User Manual 53 1002696 01 SAN Connection utilization 29...
Страница 998: ...950 Brocade Network Advisor SAN User Manual 53 1002696 01 Removing a frame monitor from a switch 30...
Страница 1138: ...1090 Brocade Network Advisor SAN User Manual 53 1002696 01 Call Home Event Tables B...
Страница 1144: ...1096 Brocade Network Advisor SAN User Manual 53 1002696 01 IP Performance monitoring events C...
Страница 1186: ...1138 Brocade Network Advisor SAN User Manual 53 1002696 01 Regular Expressions F...
Страница 1486: ...1438 Brocade Network Advisor SAN User Manual 53 1002696 01 Views H...