Nortel Networks NN46120-104 User Manual

Page 159

Advertising
background image

Boot User Password

159

(

new

setup, continued)

Card 1 successfully initialized.

Should new or existing CODE iKeys be used?

(new/existi

ng) [new]:

existing

3

Transfer the cluster wrap key from the existing CODE-SO

and CODE-USER iKeys to card 0.

Make sure you use the same pair of CODE-SO and
CODE-USER iKeys that were used in the former cluster of ASA
310-FIPS devices.

(

new

setup, continued)

Verify that CODE-SO iKey (black) is inserted in card 0

(with flashing LED).

Hit enter when done.

Verify that HSM-USER iKey (blue) is inserted in card 0

(with flashing LED).

Hit enter when done.

Verify that CODE-USER iKey (black) is inserted in card 0

(with flashing LED).

Hit enter when done.

Wrap key successfully combined to card 0.

4

Transfer the cluster wrap key from the CODE-SO and

CODE-USER iKeys to card 1.

(

new

setup, continued)

Verify that CODE-SO iKey (black) is inserted in card 1

(with flashing LED).

Hit enter when done.

Verify that HSM-USER iKey (blue) is inserted in card 1

(with flashing LED).

Hit enter when done.

Verify that CODE-USER iKey (black) is inserted in card 1

(with flashing LED).

Hit enter when done.

Wrap key successfully split combined to card 1.

5

If you selected FIPS mode as the security mode, specify the

passphrase.

Enter the same secret passphrase as was defined in the former
cluster running in FIPS mode. This step only appears if you
selected FIPS mode when initializing the HSM cards.

Nortel VPN Gateway

User Guide

NN46120-104

02.01

Standard

14 April 2008

Copyright © 2007-2008 Nortel Networks

.

Advertising