Fabric OS Encryption Administrator's Guide

26 Fabric OS Encryption Administrator’s Guide
53-1002159-03
Steps for connecting to an SKM or ESKM appliance
2
FIGURE 14 Warning message
2. Select Yes to initialize the node.
Steps for connecting to an SKM or ESKM appliance
The SKM and Enterprise SKM (ESKM) management web console can be accessed from any web
browser with Internet access to the SKM/ESKM appliance. Both SKM and ESKM are supported,
but combining them in a single encryption group is not supported. The URL for the appliance is as
follows:
https://<appliance hostname>:<appliance port number>
Where:
- <appliance hostname> is the hostname or IP address when installing the SKM/ESKM
appliance.
- <appliance port number> is 9443 by default. If a different port number was specified
when installing the SKM/ESKM appliance, use that port number.
The following configuration steps are performed from the SKM/ESKM management web console
and from the Management application.
Configure a Brocade group on SKM/ESKM.
Register the Brocade group user name and password on the encryption node.
Set up a local Certificate Signing Authority (CA) on SKM/ESKM.
Download the CA certificate.
Create and install an SKM/ESKM server certificate.
Enable an SSL connection.
Configure a cluster of SKM/ESKM appliances for high availability.
Export and sign the encryption node certificate signing requests.
Import the signed certificates into the encryption node.