HP Security Modules Software Upgrade Guide-6PW103
3
• The secure application file is the last resort for the Security module boot. You cannot change the
type of the secure application file, or change other types of files to the secure application file. You
can only download it using the BootWare menu.
• There is only one application file of the same type (M, B, or S) on the CF card.
Configuration files
The configuration files store configuration information of Security modules. By default, three configuration
files are defined to load configuration information at the Security module boot.
• Main configuration file: The file type is M and the file extension is .cfg. By default, the Security
module uses the main configuration file to load configuration information.
• Backup configuration file: The file type is B and the file extension is .cfg. When loading with the
main configuration file fails, the Security module uses the backup configuration file to load
configuration information.
• Default configuration file: The file type can be M, B, or N/A, and the file extension is .cfg or .xml.
When loading the main and backup configuration files fails, the Security module uses the default
configuration file (startup.cfg or system.xml) to load configuration information. If loading the default
configuration file fails, the Security module boots without any configuration information.
These three types of files are stored on the CF card for all Security modules except the SSL VPN modules.
For an SSL VPN module, the files are stored on the flash memory by default.
If you have loaded the three configuration files into the CF card, the Security module will boot using these
three files in sequence. To change the type of a configuration file, see “Specifying a configuration file”.
NOTE:
• The confi
g
uration file name containin
g
a drive identifier and a strin
g
terminator cannot be lon
g
er than
64 characters. For example, if the drive identifier is “CF:/”, the file name excludin
g
the drive identifier
and string terminator can be at most [ 64 – 1 – 4 ] = 59 characters in length. Typically, a file name
excludin
g
drive identifier and strin
g
terminator is recommended to contain no more than 16 characters.
• A configuration file name cannot contain extended ASCII characters (ASCII greater than or equal to
128), invisible characters (ASCII less than 33), “, ‘, ?, \, space, *, |, <, /, :, >, or -.
• The dot “.” can appear in a file name, but not at the beginning or end of the file name. In addition, the
file name cannot contain two consecutive dots.
• A configuration file downloaded through the WEB is still stored on the CF card.
CAUTION:
• The configuration files for Security module configuration at boot time can be a file of type M or B, or a
default configuration file of type N/A, but not non-default configuration files of type N/A.
• You can modify the name of a configuration file in the CF card using a command after the Security
module boots. You can modify the type of a confi
g
uration file of type M, B, or N on the BootWare menu
or the command line interface (CLI) after the Security module boots, but you cannot modify the type of
the default configuration file.
• There is only one configuration file of the same type (M or B) on the CF card.