![Thales ProtectToolkit 5.9.1 Скачать руководство пользователя страница 77](http://html1.mh-extra.com/html/thales/protecttoolkit-5-9-1/protecttoolkit-5-9-1_installation-and-configuration-manual_1099198077.webp)
Chapter 4: ProtectToolkit Software Installation
During reboot, the MOK enrollment request is noticed by
shim.efi
, which launches
MokManager.efi
so
that you can complete the enrollment from the UEFI console.
c.
When prompted, press any key to perform MOK management.
d.
From the list of options, select
Enroll MOK
.
e.
Select
Continue
and then
Yes
to confirm that you want to enroll the key.
f.
Enter the password you created for the enrollment request.
g.
Select
Reboot
to reboot the machine.
4.
Sign the ProtectServer PCIe HSM driver with the private key. This is accomplished using a perl script. You
must specify both the private and public key files and the driver file that you wish to sign (vkd.ko).
# perl /usr/src/kernels/$
(uname
-r
)
/scripts/sign-file sha256
<private_keyname>
.priv
<public_
keyname>
.der /lib/modules/$
(uname
-r
)
/kernel/drivers/crypto/vkd.ko
5.
Load the ProtectServer PCIe driver.
# service vkd restart
Manual Linux Installation for Net Server Mode
Use the following commands to install or uninstall the Net Server Access Provider package. It includes the
components required to make an installed ProtectServer PCIe 2 HSM available on the network to other
ProtectToolkit clients. Requires an installed ProtectServer PCIe 2 and the
PCIe HSM Access Provider
package as prerequisites.
To install the Net Server Access Provider manually
Execute the following as
root
(where x.x.x-yy is the PTK version number). Specify the location you chose for
the installation files:
# cd /output-unix/Linux64/hsm_net_server
rpm -i PTKnetsrv-x.x.x-yy.x86_64.rpm
To uninstall the Net Server Access Provider manually
Use the
rpm(8)
command with the appropriate package name as a parameter.
# rpm -e PTKnetsrv
Installing ProtectToolkit-C Manually on Linux
Use the following commands to install or uninstall ProtectToolkit-C.
To install ProtectToolkit-C manually
1.
Choose the PTK-C package you wish to install:
•
ProtectToolkit C Runtime:
installs all the necessary tools and interfaces for a ProtectToolkit-C based
Cryptoki service provider. Requires the correct
Access Provider
package for your deployment as a
prerequisite.
Thales ProtectServer HSM 5.9.1 ProtectServer HSM and ProtectToolkit Installation and Configuration Guide
2021-11-02 08:51:40-04:00 Copyright 2009-2021 Thales Group
77