Luna SA HSM
Configuring an HA Cluster with a Luna SA HSM
DSM Installation and Configuration Guide
Copyright 2009 - 2020 Thales Group. All rights reserved.
104
Partition
Name
Objects
Total
Used
Free
1394399181014
Luna1_
Par101
1
409782
200
409582
1394399181015
Luna1_
Par102
2
409782
400
409382
5. To create a partition, type:
lunash:> partition create -partition <
PartitionName
>
Example
lunash:> partition create -partition dsm51005
6. Type the following to finish creating the partition:
lunash:> proceed
7. If the HSM Administrator is not yet logged in, the following error message displays:
Error: 'partition create' failed. (1010000 : LUNA_RET_USER_NOT_LOGGED_IN)
Error: The HSM Administrator is not logged in.
The HSM Administrator must be logged in to execute this command.
8. At the prompt, type the following:
lunash:> hsm login
9. Type the HSM Administrators' password.
10. Repeat the previous step 5 and 6 to create the partition.
11. To verify that your partition was created, type:
lunash:> partition list
Partition
Name
Objects
Total
Used
Free
1394399181013
Luna1_Par100
0
409782
0
409782
1394399181014
Luna1_Par101
1
409782
200
409582
1394399181015
Luna1_Par102
2
409782
400
409382
1394399181016
DSM51005
0
409782
0
409782
Creating a Partition on the PED-authenticated Luna
In the PED-authenticated Luna, multiple DSM clusters can register to the same partition. Therefore, the password is
now user-controlled because all subsequent DSMs that register with that partition will need that password. When the
Luna PED is initially set up, the crypto officer sets the password for the partition. You must obtain that password
before adding the PED-authenticated Luna to your DSM cluster.
To create a partition on a PED-authenticated Luna:
1. Setup the PED-authenticated Luna according to the instructions in the
SafeNet Luna Network HSM
Configuration Guide
.
Note:
Ensure that the Luna is set up in FIPS mode.