Configuring key vault settings for rsa data, Protection manager (dpm) – Brocade Network Advisor SAN + IP User Manual v12.1.0 User Manual

Page 981

Advertising
background image

Brocade Network Advisor SAN + IP User Manual

927

53-1002949-01

Creating a new encryption group

25

-

For ESKM/SKM key vault setting instructions, see

“Configuring key vault settings for HP

Enterprise Secure Key Manager (ESKM/SKM)”

on page 938.

-

For TEKA key vault setting instructions, see

“Configuring key vault settings for Thales

e_Security keyAuthority (TEKA)”

on page 943.

-

For TKLM key vault setting instructions, see

“Configuring key vault settings for IBM Tivoli

Key Lifetime Manager (TKLM)”

on page 948.

-

For KMIP key vault setting instructions, see

“Configuring key vault settings for Key

Management Interoperability Protocol”

on page 952.

Configuring key vault settings for RSA Data Protection Manager (DPM)

The following procedure assumes you have already configured the initial steps in the Configure
Switch Encryption wizard. If you have not already done so, go to

“Creating a new encryption group”

on page 922.

Figure 355

shows the key vault selection dialog box for DPM.

FIGURE 355

Select Key Vault dialog box for DPM

1. Enter the IP address or host name for the primary key vault. If you are clustering DPM

appliances for high availability, IP load balancers are used to direct traffic to the appliances.
Use the IP address of the load balancer.

2. Enter the name of the file that holds the Primary Key Vault’s CA Key Certificate or browse to the

desired location. This file can be generated from the key vault’s administrative console.

3. If you are implementing encryption on data replication LUNs used by the EMC Symmetrix

Remote Data Facility (SRDF), you must select Enabled for REPL Support.

4. Click Next.

The Specify Certificate Signing Request File Name dialog box displays. (Refer to

Figure 356

.)

Advertising