Fabric OS Encryption Administrator's Guide

Fabric OS Encryption Administrator’s Guide 121
53-1002159-03
Steps for connecting to an SKM or ESKM appliance
3
The new local CA displays under Local Certificate Authority List (Figure 92).
FIGURE 92 Creating an HP SKM/ESKM Local CA
5. Under Certificates & CAs, select Trusted CA Lists to display the Trusted Certificate Authority List
Profiles.
6. Click on Default under Profile Name.
7. In t h e Trusted Certificate Authority List, click Edit.
8. From the list of Available CAs in the right panel, select the CA you just created.
9. Click Add to add the local CA to the Trusted CAs list.
10. Click Save.
Repeat these steps any time another local CA is needed.
Downloading the local CA certificate
The local CA certificate you created using the procedure for “Setting up the local Certificate
Authority (CA) on page 120 must be saved to your local system. Later, this certificate must be
imported onto the Brocade encryption group leader nodes.
1. From the Security tab, select Local CAs under Certificates and CAs.
2. Select the CA certificate you created.
3. Click Download, and save the certificate file on your local system.
4. Rename the downloaded file, changing the .cert extension to a .pem extension. This file is
needed later when “Registering SKM or ESKM on a Brocade encryption group leader” on
page 128.