Scalar i500 User's Guide
Importing Encryption Certificates
The encryption certificate contains a public key that is used to wrap
(encrypt) encryption keys prior to transporting them to another SKM
server. When sharing tape cartridges, you need to import the encryption
certificate of the destination SKM server.
This function is available to administrators and only applies
Note:
to SKM servers. Both SKM servers must be connected and
operational in order to import encryption certificates.
To import encryption certificates:
1 Before starting this process, read and follow the sequence of steps
outlined in
Sharing Encrypted Tape Cartridges
2 Receive the encryption certificate file from the destination SKM
server administrator and save it to a known location on your
computer.
3 From the Tools menu, select EKM Management > Encryption
Certificate > Import.
4 Click Browse to locate the saved encryption certificate file.
5 Click Open.
6 Click Apply to import the certificate onto your SKM server.
Exporting Data Encryption Keys
SKM servers provide a unique encryption key for each tape cartridge that
is encrypted. In order for another (i.e., destination) SKM server to read
tapes encrypted by your SKM server (i.e., source), you need to export the
encryption keys used to encrypt those tapes and send them to the
destination server.
This function is available to administrators and only applies
Note:
to SKM servers. Both SKM servers must be connected and
operational in order to export data encryption keys.
Chapter 7 Encryption Key Management
Configuring Encryption Key Management on the Library
7
on page 196.
7
198