Signing The Encryption Node Kac Csr On Teka; Importing A Signed Kac Certificate Into A Switch - Brocade Communications Systems StoreFabric SN6500B User Manual

Brocade network advisor san user manual v12.0.0 (53-1002696-01, march 2013)
Hide thumbs Also See for StoreFabric SN6500B:
Table of Contents

Advertisement

Signing the encryption node KAC CSR on TEKA

The KAC certificate signing request (KAC CSR) generated when the encryption node is initialized
must be exported for each encryption node and signed by the local CA on TEKA. The signed
certificate must then be imported back into the encryption node.
1. From the Encryption Center, select Switch > Export Certificate.
2. Select Public Key Certificate Request (CSR), then click OK.
3. Log in to the Thales management program.
4. In the user table under the Certificate column, click the pen icon for the newly created user.
5. Enter the CSR file name exported from the switch in the From File box, or if you copied the CSR
6. Under the Certificate column, click the export icon (globe with an arrow).
7.
8. Perform the above steps for both the primary and secondary key vaults using the same user

Importing a signed KAC certificate into a switch

After a KAC CSR has been submitted and signed by a CA, the signed certificate must be imported
into the switch.
1. From the Encryption Center, select Switch > Import Certificate.
FIGURE 204
2. Browse to the location where the signed certificate is stored, then click OK.
Brocade Network Advisor SAN User Manual
53-1002696-01
The Export Switch Certificate dialog box displays.
A dialog box displays that allows you to save the CSR to your SAN Management Program
client PC.
Alternatively, you can select Switch > Properties, then click the Export button beside the Public
Key Certificate Request, or you can copy the CSR for pasting in the From Text box on the Thales
management program Sign Certificate Request page.
The Sign Certificate Request page displays.
from Switch > Properties, paste the CSR file contents to the From Text box, then click Sign.
A file save dialog displays.
Click Save and enter the destination location for this signed certificate. Save the certificate
with a Privacy Enhanced Mail (.pem) extension.
name, password, and group.
The Import Signed Certificate dialog box displays
Import Signed Certificate dialog box
The signed certificate is stored on the switch.
Steps for connecting to a TEKA appliance
(Figure
204).
20
569

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Brocade network advisor 12.0.0

Table of Contents