Key management server settings workflow, Converting the client certificate, Converting – HP StorageWorks XP Data Integrity Check XP Software User Manual

Page 14: Converting the client

Advertising
background image

4.

Complete the following information:

Country Name (two-letter code)

Email Address

(Optional) Challenge password

(Optional) Common name - To obtain a signed and trusted certificate, ensure that the
server name is the same as the host name of the storage device.

State or Province Name

Locality Name

Organization Name

Organization Unit Name

Common Name

5.

Send the public key to the Certificate Authority (CA) of the key management server, and
request that the CA issue a signed certificate. Use the signed certificate as the client certificate.

For more information, see the SafeNet KeySecure k460 6.1.0 documentation.

Converting the client certificate to the PKCS#12 format

Convert the client certificate to the PKCS#12 format, which includes uploading the client certificate
in the PKCS#12 format to the 200 Storage Virtualization System (P9500 storage system).
1.

From an open command prompt, change the current directory to the folder where you want
to save the client certificate in the PKCS#12 format.

2.

Move the private SSL key file (.key) and the client certificate to the folder in the current directory,
and run the command.

The following is an example for an output folder of c:\key, private key file (client.key),
and a client certificate file (client.crt:

C:\key>c:\openssl\bin\openssl pkcs12 -export -in client.crt -inkey

client.key -out client.p12

3.

Upload the client certificate in the PKCS#12 format to the P9500 storage system and type the
client certificate password.

For more information about uploading the client certificate, see

“Converting the client certificate

to the PKCS#12 format” (page 14)

.

Configuring the connection settings to the key management server

Configure the connection settings to the key management server, which includes uploading the
root certificate of the key management server and the client certificate in the PKCS#12 format to
the P9500 storage system.
1.

On the menu bar, click Settings > Environmental Setting > View Key Management Server
Properties.

2.

In the View Key Management Server Properties window, click Setup Key Management Server.

If you have not set the connection to the key management server, a message is displayed.
Click OK.

3.

In the Setup Key Management Server window, upload the root certificate of the key
management server and the client certificate in the PKCS#12 format to the P9500 storage
system.

Key management server settings workflow

To use a key management server, you must configure the connection and network settings.

14

Key Management Server Connections

Advertising
This manual is related to the following products: