Sign In
Upload
Manuals
Brands
SafeNet Manuals
Server
Luna SA
SafeNet Luna SA Manuals
Manuals and User Guides for SafeNet Luna SA. We have
1
SafeNet Luna SA manual available for free PDF download: Configuration Manual
SafeNet Luna SA Configuration Manual (109 pages)
Brand:
SafeNet
| Category:
Server
| Size: 1.32 MB
Table of Contents
Revision History
2
Table of Contents
3
Release 5.4.1 007-011136-007Rev C July 2014 Copyright 2014 Safenet, Inc. All Rights Reserved
3
Release 5.4.1 007-011136-007 Rev C July 2014 Copyright 2014 Safenet, Inc. All Rights Reserved
4
Release 5.4.1 007-011136-007 Rev C July 2014 Copyright 2014 Safenet, Inc. All Rights Reserved
5
Audience
6
Customer Release Notes
6
Preface
6
About the Configuration Guide
6
Document Conventions
7
Notes
7
Cautions
7
Warnings
7
Command Syntax and Typeface Conventions
7
Support Contacts
8
CHAPTER 1 Planning Your Configuration
10
Planning Your Configuration
10
Roles
10
Named Administrative Users and Their Assigned Roles
10
Implications of Backup and Restore of User Profiles
11
Crypto Officer & Crypto User
12
How the Roles Are Invoked
14
Bad Login Attempts
15
Security of Shell User Accounts
12
Domain Planning
15
Luna PED Planning
16
What each PED Prompt Means
16
HSM Initialization and the Blue so PED Key
17
HSM Cloning Domain and the Red Domain PED Key
18
Partition Owner/User and the Black PED Key
18
Remote PED Orange PED Key (RPK)
19
Auditor
19
Secure Recovery Purple PED Key (SRK)
20
Other Considerations
20
Luna PED Planning
20
What each PED Prompt Means
21
HSM Initialization and the Blue so PED Key
22
HSM Cloning Domain and the Red Domain PED Key
23
Partition Owner/User and the Black PED Key
23
Remote PED Orange PED Key (RPK)
24
Auditor
24
Secure Recovery Purple PED Key (SRK)
24
Other Considerations
25
CHAPTER 2 Configure the Luna Appliance for Your Network
26
Gather Appliance Network Setting Information
26
Client Requirements
26
Recommended Network Characteristics
27
Power-Up the HSM Appliance
27
Power off
29
Open a Connection
30
First Login & Changing Password
31
Set System Date and Time
33
Configure IP and Network Parameters
35
Make Your Network Connection
37
Generate a New HSM Server Certificate
39
CHAPTER 3 HSM Initialization
42
Initializing a Password-Authenticated HSM
44
Initializing a PED-Authenticated HSM
46
Recover the SRK
46
Re-Split[ See 'Resplit' ] the SRK
48
Other Uses of the SRK
48
Initializing a PED-Authenticated HSM
48
Preparing to Initialize a Luna SA HSM [PED-Version]
49
Why Initialize
50
Start a Serial Terminal or SSH Session
51
Initialize the HSM
51
Initialization - some Additional Options and Description
62
CHAPTER 4 HSM Capabilities and Policies
67
Set HSM Policies (Password Authentication)
67
Set HSM Policies - PED (Trusted Path) Authentication
69
CHAPTER 5 Creating a Partition on the HSM
72
Prepare to Create a Partition (Password Authenticated)
72
About HSM Partitions on the Initialized HSM
72
Create the Partition [PW]
73
Partition Creation Audit Log Entry
74
Next Steps
74
Prepare to Create a Partition (PED Authenticated)
75
About HSM Partitions on the Initialized HSM
75
Create (Initialize) the Partition - PED Authenticated
76
Partition Creation Audit Log Entry
84
Record the Partition Client Password (PED-Auth Hsms)
85
CHAPTER 6 Partition Policies
88
Set Partition Policy
89
Policy Setting Example, Luna HSM with Password Authentication
90
Policy Setting Example, Luna HSM with PED Authentication
90
CHAPTER 7 Prepare the Client for Network Trust Link
91
Preparing the Client
91
Import a Server Cert
92
Prepare a Network Trust Link - Windows
93
Import HSM Appliance Server Certificate Onto Client (Windows)
93
Register the HSM Server Certificate with the Client (Windows)
95
Create a Client Certificate (Windows)
96
Export a Client Cert to an HSM Appliance (Windows)
99
Prepare a Network Trust Link - Unix/Linux
102
Import HSM Appliance Server Certificate Onto Client (UNIX)
102
Register the HSM Server Certificate with the Client (UNIX)
102
Register
103
Create a Client Certificate (UNIX)
103
Export a Client Cert to an HSM Appliance (UNIX)
104
Register the Client Certificate to an HSM Server
105
How Many Clients
106
Register VM Clients
106
What's the Next Step
106
Assign a Client to a Partition
107
Verify Your Setup
107
CHAPTER 8 Assign a Client to an HSM Partition
107
Applications and Integrations
108
Client Connection Limits
108
CHAPTER 9 Optional Configuration Tasks
109
Advertisement
Advertisement
Related Products
SafeNet ProtectServer External 2
SafeNet PSE2
SafeNet Categories
Server
Security System
Modem
Adapter
PCI Card
More SafeNet Manuals
Login
Sign In
OR
Sign in with Facebook
Sign in with Google
Upload manual
Upload from disk
Upload from URL