![Brocade Communications Systems Network Advisor 12.3.0 Скачать руководство пользователя страница 765](http://html1.mh-extra.com/html/brocade-communications-systems/network-advisor-12-3-0/network-advisor-12-3-0_user-manual_2817323765.webp)
Brocade Network Advisor SAN User Manual
713
53-1003154-01
Steps for connecting to a DPM appliance
20
Steps for connecting to a DPM appliance
All switches that you plan to include in an encryption group must have a secure connection to the
RSA Data Protection Manager (DPM). The following is a suggested order of steps needed to create
a secure connection to the DPM.
NOTE
The switch uses the manual enrollment of identities with client registration to connect with DPM 3.x
servers. Client registration is done automatically when you upgrade to Fabric OS 7.1.0 from an
earlier version and no additional user interaction is needed during the upgrade scenario.
Once completed, client registration occurs after key vault registration, when the switch attempts to
connect to the DPM server for the first time.
1. Export the Key Authentication Center (KAC) CSR to a location accessible to a CA for signing.
Refer to
“Exporting the KAC certificate signing request (CSR)”
on page 713.
2. Submit the KAC CSR for signing by a CA. Refer to
“Submitting the CSR to a certificate authority”
on page 714.
3. Set the KAC certificate registration expiry. Refer to
“KAC certificate registration expiry”
on
page 714.
4. Import the signed certificate into the Fabric OS encryption node. Refer to
“Importing the signed
KAC certificate”
on page 715.
5. Upload the signed KAC and CA certificates onto the DPM appliance and select the appropriate
key classes. Refer to the following:
•
“Uploading the CA certificate onto the DPM appliance (and first-time configurations)”
on
page 715.
•
“Uploading the KAC certificate onto the DPM appliance (manual identity enrollment)”
on
page 717.
6. If dual DPM appliances are used for high availability, the DPM appliances must be clustered,
and must operate in maximum availability mode, as described in the DPM appliance user
documentation. Refer to
“DPM key vault high availability deployment”
on page 717.
Exporting the KAC certificate signing request (CSR)
1. Export the Key Authentication Center (KAC) CSR to a temporary location prior to submitting the
KAC CSR to a CA for signing.
2. Synchronize the time on the switch and the key manager appliance. Time settings should be
within one minute of each other. Differences in time can invalidate certificates and cause key
vault operations to fail.
3. Select a switch from the Encryption Center Devices table, then select Switch > Properties from
the menu task bar to display the Properties dialog box.
NOTE
You can also select a switch from the Encryption Center Devices table, then click the
Properties icon.
Содержание Network Advisor 12.3.0
Страница 1: ...53 1003154 01 11 July 2014 Brocade Network Advisor SAN User Manual Supporting Network Advisor 12 3 0...
Страница 4: ...iv Brocade Network Advisor SAN User Manual 53 1003154 01...
Страница 86: ...34 Brocade Network Advisor SAN User Manual 53 1003154 01 Uninstalling a patch 2...
Страница 190: ...138 Brocade Network Advisor SAN User Manual 53 1003154 01 Fabric tracking 4...
Страница 216: ...164 Brocade Network Advisor SAN User Manual 53 1003154 01 User profiles 5...
Страница 462: ...410 Brocade Network Advisor SAN User Manual 53 1003154 01 Searching for an assigned event filter 9...
Страница 478: ...426 Brocade Network Advisor SAN User Manual 53 1003154 01 Microsoft System Center Operations Manager SCOM plug in 10...
Страница 612: ...560 Brocade Network Advisor SAN User Manual 53 1003154 01 Exporting Host port mapping 13...
Страница 620: ...568 Brocade Network Advisor SAN User Manual 53 1003154 01 Exporting storage port mapping 14...
Страница 720: ...668 Brocade Network Advisor SAN User Manual 53 1003154 01 Security configuration deployment 17...
Страница 744: ...692 Brocade Network Advisor SAN User Manual 53 1003154 01 Configuring Virtual Fabrics 19...
Страница 1036: ...984 Brocade Network Advisor SAN User Manual 53 1003154 01 Troubleshooting FCIP Ethernet connections 22...
Страница 1068: ...1016 Brocade Network Advisor SAN User Manual 53 1003154 01 Removing thresholds 24...
Страница 1098: ...1046 Brocade Network Advisor SAN User Manual 53 1003154 01 Swapping blades 25...
Страница 1104: ...1052 Brocade Network Advisor SAN User Manual 53 1003154 01 Searching the configuration snapshots 26...
Страница 1176: ...1124 Brocade Network Advisor SAN User Manual 53 1003154 01 SAN connection utilization 28...
Страница 1282: ...1230 Brocade Network Advisor SAN User Manual 53 1003154 01 Removing a frame monitor from a switch 30...
Страница 1306: ...1254 Brocade Network Advisor SAN User Manual 53 1003154 01 Viewing historical reports for a configuration policy manager 31...
Страница 1378: ...1326 Brocade Network Advisor SAN User Manual 53 1003154 01 Event logs 32...
Страница 1432: ...1380 Brocade Network Advisor SAN User Manual 53 1003154 01 MAPS integration with other features 33...
Страница 1448: ...1396 Brocade Network Advisor SAN User Manual 53 1003154 01 Upload failure data capture 34...
Страница 1490: ...1438 Brocade Network Advisor SAN User Manual 53 1003154 01 SAN shortcut menus A...
Страница 1494: ...1442 Brocade Network Advisor SAN User Manual 53 1003154 01 Call Home Event Tables B...
Страница 1524: ...1472 Brocade Network Advisor SAN User Manual 53 1003154 01 About Roles and Access Levels D...
Страница 1552: ...1500 Brocade Network Advisor SAN User Manual 53 1003154 01 Regular Expressions F...
Страница 1920: ...1868 Brocade Network Advisor SAN User Manual 53 1003154 01 Views H...