User Guide
DDOC0099-000-AG
DTS1 CSfC
6 - 3
Quick Start
© 2020 Curtiss-Wright Defense Solutions
Revision 0.0
8. Load encryption key:
cmkey --load <loc> -s 0
9. View RMC status:
rmcctl
NOTE
DTS1 CSfC units require use of software encryption in addition to hardware encryption.
NOTE
Disks cannot be partitioned after software encryption has been performed.
NOTE
The RMC module must have services assigned before software encryption layer can be initialized.
NOTE
It may be necessary to turn off active services before making changes to the state of the RMC. If
so, type
serv --all 0
10. Assign service:
rmcctl --serv NAS
11. Initialize software encryption:
rmcctl --force -C
NOTE
Software passwords / passphrases must be 8 to 512 characters long and use numbers, letters,
and special characters. If using a password, it must pass dictionary test.
12. When prompted, enter
password / passphrase
13. Open software encryption container:
rmcctl -E
14. When prompted, enter same
password / passphrase
as previously entered.
15. View RMC status:
rmcctl
DTS1 is ready to use with CSfC encryption.
6.3
Login
After encryption has been initialized, subsequent use requires only following the login process.
Refer to Figure 6.2 for a login flowchart.
1. Generate challenge:
cmlogin -u username -p password -L
The challenge will be a random string 80 characters long.
2. Generate HMAC string using challenge generated in step 1 as input MESSAGE and
unencrypted user token (generated during initialization) as KEY.
3. Log into crypto module:
cmlogin -M generated HMAC string
4. Verify successful login:
cmlogin
CMLOGIN: state=ready init=1 status=OK
cw_dts>
rmcctl
[rmcctl]
RMC_S#: ins hcryp osdr p#
size
serv scryp osdm fmt mnt rem mntpoint
*********************************************************************************
RMC_S0: 1
1
0
--
XX GB NONE 0
na
0
na
0
----
[!rmcctl] OK
cw_dts>
rmcctl
[rmcctl]
RMC_S#: ins hcryp osdr p#
size
serv scryp osdm fmt mnt rem mntpoint
*********************************************************************************
RMC_S0: 1
1
0
--
XX GB
NAS
1
1
0
na
0
----
[!rmcctl] OK