CHAPTER 5 Creating a Partition on the HSM
You must provide the blue HSM Admin PED Key that has been imprinted (initialized) for this HSM.
If you had set a PED PIN, you are prompted for that, as well.
5.
Next, see
"Create (Initialize) the Partition - PED Authenticated" on page 76
.
WARNING! If you fail three consecutive login attempts as HSM Admin (also called
SO), the HSM is zeroized and cannot be used — it must be re-initialized. Re-initializing
zeroizes the HSM contents. Zeroizing destroys all key encryption material. Please note
that the HSM must actually receive some information before it logs a failed attempt, so
if you forget to insert a PED Key, or if you insert the wrong kind (for example, if you
insert a black key when a red key is called for), that is not logged as a failed attempt.
Also, when you successfully login, the counter is reset to zero.
If you are not sure that you are currently logged in as HSM Admin (or SO), perform an ‘
hsm logout
’, then log in again.
Create (Initialize) the Partition - PED Authenticated
Having logged in, you can now use the
partition create
command, to create an HSM Partition. You must supply
a label or name for the new Partition when you issue the command.
lunash:> partition create -partition <name-for-new-Partition>
(The angle brackets “<“ and “>” indicate that you fill in text of your choice. Do not type the brackets.)
A partition name can be from 1 to 64 characters in length, and can include any of the following characters :
!#$%'()*+,-./0123456789:=@ABCDEFGHIJKLMNOPQRSTUVWXYZ[]^_abcdefghijklmnopqrstuvwxyz{}~
No spaces.
1.
Create and name an HSM Partition. Type:
lunash:> partition create -partition myPartition1
(substitute the name of your choice for "myPartition1")
Please ensure that you have purchased licenses for at least this number of
partitions: -1
If you are sure to continue then type 'proceed', otherwise type 'quit'
Luna SA Configuration Guide
Release 5.4.1 007-011136-007 Rev C July 2014 Copyright 2014 SafeNet, Inc. All rights reserved.
76
Содержание Luna SA
Страница 1: ...Luna SA Configuration Guide ...