![SafeNet Luna SA Скачать руководство пользователя страница 51](http://html1.mh-extra.com/html/safenet/luna-sa/luna-sa_configuration-manual_798623051.webp)
CHAPTER 3 HSM Initialization
Start a Serial Terminal or SSH session
bash#: ssh 192.20.10.203
login as: admin
[email protected]'s password:________
Last login: Fri Dec
2 20:16:54 2011 from 192.17.153.225
Luna SA 5.1.0-22 Command Line Shell - Copyright (c) 2001-2011 SafeNet, Inc. All rights reserved.
[myluna] lunash:>
Initialize the HSM
1.
Have the Luna PED connected and ready (in local mode and "Awaiting command...").
2.
Insert a blank PED Key into the USB connector at the top of the PED.
3.
In a serial terminal window or with an SSH connection, log into Luna Shell as the HSM administrator 'admin':
lunash:>
4.
Run the hsm init command, giving a label for your Luna SA HSM. [If Secure Transport Mode was set, you must
unlock the HSM with the purple PED Key before you can proceed; see earlier on this page and the
Recover the
SRK
page. ]
The following is an example of initialization dialog, with PED interactions inserted to show the sequence of
events.
lunash:>
hsm init -label myLunaHSM
The following warning appears:
CAUTION:
Are you sure you wish to re-initialize this HSM?
All partitions and data will be erased.
Type 'proceed' to initialize the HSM, or 'quit'
to quit now.
>
Please attend to the PED.
Note:
Respond promptly to avoid PED timeout Error. At this time, the PED becomes active
and begins prompting you for PED Keys and other responses. For security reasons, this
sequence has a time-out, which is the maximum permitted duration, after which an error is
generated and the process stops. If you allow the process to time-out, you must re-issue the
initialization command. If the PED has timed out, press the [CLR] key for five seconds to reset,
or switch the PED off, and back on, to get to the “Awaiting command....” state before re-issuing
another lunash command that invokes the PED.
See
"Initialization - some additional options and description " on page 62
for additional information and a summary
of the options you might choose or encounter during this process - this procedure (below) assumes a relatively
straightforward process.
Luna PED asks preliminary setup questions.
The simplest scenario is your first-ever HSM and new PED Keys. However, you might have previously initialized
this HSM and be starting over. Or you might have other HSMs already initialized and need to share the
authentication or the domain with your new HSM.
Luna SA Configuration Guide
Release 5.4.1 007-011136-007 Rev C July 2014 Copyright 2014 SafeNet, Inc. All rights reserved.
51
Содержание Luna SA
Страница 1: ...Luna SA Configuration Guide ...