Fabric OS Encryption Administrator's Guide

130 Fabric OS Encryption Administrator’s Guide
53-1002159-03
Steps for connecting to an SKM or ESKM appliance
3
Client SDK Version: 4.8.2.000017
Client Username: brcduser1
Client Usergroup: brocade
Connection Timeout: 10 seconds
Response Timeout: 10 seconds
Connection Idle Timeout: N/A
Key Vault configuration and connectivity checks successful, ready for key
operations.
Authentication Quorum Size: 0
Authentication Cards:
Certificate ID / label : qc.4250420d02048578 /
sumita:gorla:qc.4250420d02048578
Certificate ID / label : qc.4250420d02047881 /
sumita:gorla:qc.4250420d02047881
NODE LIST
Total Number of defined nodes: 2
Group Leader Node Name: 10:00:00:05:1e:53:8a:67
Encryption Group state: CLUSTER_STATE_CONVERGED
Node Name IP address Role
10:00:00:05:1e:53:8a:83 10.32.71.127 MemberNode (current node)
EE Slot: 0
SP state: Online
10:00:00:05:1e:53:8a:67 10.32.71.129 GroupLeader
EE Slot: 0
SP state: Online
Registering the SKM or ESKM Brocade group user name and password
The Brocade group user name and password you created when configuring a Brocade group on the
SKM/ESKM must also be registered on each Brocade encryption node.
1. Log in to the switch as Admin or SecurityAdmin.
2. Register the HP SKM/ESKM Brocade group user password and user name by issuing the
following command.
SecurityAdmin:switch>cryptocfg --reg -KAClogin primary
NOTE
This command is must be used only for the primary key vault.
3. When prompted, enter the user name.
4. When prompted enter and confirm the password.
5. Repeat the procedure for each node.
Keep the following rules in mind when registering the Brocade user name and password:
The user name and password must match the user name and password specified for the
Brocade group.
The same user name and password must be configured on all nodes in an encryption group.
This is not enforced or validated by the encryption group members, so care must be taken
when configuring the user name and password to ensure they are the same on each node.