Configuring Okm Keystore Encryption (Cli) - Oracle ZFS Storage Appliance Administration Manual

Hide thumbs Also See for ZFS Storage Appliance:
Table of Contents

Advertisement

Key Manager Server
User Agent ID
Registration PIN
4.
To save the server information, click Apply, or to discard the changes, click
Cancel.
5.
To create a key, click the Add item icon
The New Key dialog box is displayed.
6.
Type a name for the key.
7.
To save the key, click Add, or to discard the changes, click Cancel.
When you click Add, the new key appears in the list of keys with the creation date.
Related Topics
"Configuring LOCAL Keystore Encryption (BUI)" on page 560
"Configuring OKM Keystore Encryption (CLI)" on page 565
"Creating a Filesystem or LUN in a Project (BUI)" on page 350

Configuring OKM Keystore Encryption (CLI)

To use the Oracle Key Manager (OKM) keystore, configure the following parameters:
agent_id
registration_pin (supplied by your OKM security officer)
server_addr
For information about encryption properties, see
If the appliance is clustered, do not use the "one time passphrase" setting when creating
Note -
the OKM server agent otherwise registration on the other cluster node will fail and keys will not
be available on failover.
To configure OKM keystore encryption, use the following CLI commands:
1.
hostname:> shares encryption
hostname:shares encryption> show
Configuring OKM Keystore Encryption (CLI)
.
"Encryption Properties" on page
581.
Data Encryption
565

Advertisement

Table of Contents
loading

Table of Contents