![Brocade Communications Systems Network Advisor 12.3.0 Скачать руководство пользователя страница 795](http://html1.mh-extra.com/html/brocade-communications-systems/network-advisor-12-3-0/network-advisor-12-3-0_user-manual_2817323795.webp)
Brocade Network Advisor SAN User Manual
743
53-1003154-01
Steps for connecting to a KMIP-compliant SafeNet KeySecure
20
FIGURE 286
Import Signed Certificate dialog box
3. Browse to the location where the signed certificate is stored, then click OK.
The signed certificate is stored on the switch.
Steps for connecting to a KMIP-compliant SafeNet KeySecure
With the introduction of Fabric OS 7.1.0, the Key Management Interoperability Protocol (KMIP)
KeySecure Management Console can be used on the switch. Any KMIP-compliant server can be
reregistered as a KMIP key vault on the switch after setting the key vault type to KMIP.
Currently, KMIP with SafeNet KeySecure 6.1 in native KMIP mode with the Brocade Encryption
Switch in KMIP mode is supported. All nodes in an encryption group should be running Fabric OS
7.1.0 and later for the key vault type to be set to KMIP.
After installing the SafeNet KeySecure appliance (also referred to as the KeySecure), you must
complete the following steps before the switch can be configured with the KeySecure. These steps
must be performed only once, in preparation for first-time configuration.
NOTE
If you are configuring two KeySecure nodes, you must complete step 1 through step 6 on the primary
node, then complete step 7 on the secondary node. If only a single node is being configured, step 7
is not needed.
The following suggested order of steps must be completed to create a secure connection to the
SafeNet KeySecure.
1. Set FIPS compliance. (Refer to
“Setting FIPS compliance”
on page 744.)
2. Create a local CA. (Refer to
“Creating a local CA”
on page 745.)
3. Create a server certificate. (Refer to
“Creating a server certificate”
on page 746.)
4. Create a cluster. (Refer to
“Creating a cluster”
on page 751.)
5. Create a Brocade group on the KeySecure appliance. (Refer to
“Configuring a Brocade group
on the KeySecure”
on page 752.)
6. Register the user name and password. (Refer to
“Registering the KeySecure Brocade group
user name and password”
on page 753.)
7. Export and sign the encryption node certificate signing requests. (Refer to
“Signing the
encryption node KAC CSR on KMIP”
on page 754.)
8. Import the signed certificates into the encryption node. (Refer to
“Importing a signed KAC
certificate into a switch”
on page 756.)
9. Back up the certificates (Refer to
“Backing up the certificates”
on page 757.)
10. Configure the KMIP server. (Refer to
“Configuring the KMIP server”
on page 759.)
11. Add a secondary node to the cluster. (Refer to
“Adding a node to the cluster”
on page 760.)
Содержание Network Advisor 12.3.0
Страница 1: ...53 1003154 01 11 July 2014 Brocade Network Advisor SAN User Manual Supporting Network Advisor 12 3 0...
Страница 4: ...iv Brocade Network Advisor SAN User Manual 53 1003154 01...
Страница 86: ...34 Brocade Network Advisor SAN User Manual 53 1003154 01 Uninstalling a patch 2...
Страница 190: ...138 Brocade Network Advisor SAN User Manual 53 1003154 01 Fabric tracking 4...
Страница 216: ...164 Brocade Network Advisor SAN User Manual 53 1003154 01 User profiles 5...
Страница 462: ...410 Brocade Network Advisor SAN User Manual 53 1003154 01 Searching for an assigned event filter 9...
Страница 478: ...426 Brocade Network Advisor SAN User Manual 53 1003154 01 Microsoft System Center Operations Manager SCOM plug in 10...
Страница 612: ...560 Brocade Network Advisor SAN User Manual 53 1003154 01 Exporting Host port mapping 13...
Страница 620: ...568 Brocade Network Advisor SAN User Manual 53 1003154 01 Exporting storage port mapping 14...
Страница 720: ...668 Brocade Network Advisor SAN User Manual 53 1003154 01 Security configuration deployment 17...
Страница 744: ...692 Brocade Network Advisor SAN User Manual 53 1003154 01 Configuring Virtual Fabrics 19...
Страница 1036: ...984 Brocade Network Advisor SAN User Manual 53 1003154 01 Troubleshooting FCIP Ethernet connections 22...
Страница 1068: ...1016 Brocade Network Advisor SAN User Manual 53 1003154 01 Removing thresholds 24...
Страница 1098: ...1046 Brocade Network Advisor SAN User Manual 53 1003154 01 Swapping blades 25...
Страница 1104: ...1052 Brocade Network Advisor SAN User Manual 53 1003154 01 Searching the configuration snapshots 26...
Страница 1176: ...1124 Brocade Network Advisor SAN User Manual 53 1003154 01 SAN connection utilization 28...
Страница 1282: ...1230 Brocade Network Advisor SAN User Manual 53 1003154 01 Removing a frame monitor from a switch 30...
Страница 1306: ...1254 Brocade Network Advisor SAN User Manual 53 1003154 01 Viewing historical reports for a configuration policy manager 31...
Страница 1378: ...1326 Brocade Network Advisor SAN User Manual 53 1003154 01 Event logs 32...
Страница 1432: ...1380 Brocade Network Advisor SAN User Manual 53 1003154 01 MAPS integration with other features 33...
Страница 1448: ...1396 Brocade Network Advisor SAN User Manual 53 1003154 01 Upload failure data capture 34...
Страница 1490: ...1438 Brocade Network Advisor SAN User Manual 53 1003154 01 SAN shortcut menus A...
Страница 1494: ...1442 Brocade Network Advisor SAN User Manual 53 1003154 01 Call Home Event Tables B...
Страница 1524: ...1472 Brocade Network Advisor SAN User Manual 53 1003154 01 About Roles and Access Levels D...
Страница 1552: ...1500 Brocade Network Advisor SAN User Manual 53 1003154 01 Regular Expressions F...
Страница 1920: ...1868 Brocade Network Advisor SAN User Manual 53 1003154 01 Views H...