3. Register ESKM using the command cryptocfg
Steps required using Brocade Management application
1. Select Configure > Encryption from the menu task bar.
2. Select an encryption group from the Encryption Center Devices table, then select Group >
FIGURE 19
3. Enter the new ESKM key vault IP address in the Primary Key Vault IP Address field.
4. Download the ESKM local CA certificate.
Fabric OS Encryption Administrator's Guide
53-1002159-03
NOTE
If the earlier configuration was done for SKM using CLI and if the previously imported CA
certificate was not deleted (using the command cryptocfg
previously imported can be reused, and importing the CA certificate is not required.
The Encryption Center dialog box displays.
Properties from the menu task bar, or right-click a group and select Properties.
The Encryption Group Properties dialog box displays.
Encryption Group Properties dialog box
a. From the Security tab, select Local CAs under Certificates and CAs.
b. Select the CA certificate you created.
Steps for Migrating from SKM to ESKM
file -delete), the CA file that was
--
reg
keyvault.
--
–
2
37