Creatingauser.................................... 45
Creatingagroup ................................... 46
Addingausertoagroup................................ 46
Removingauserfromagroup.............................. 46
Deletingauser .................................... 46
Deletingagroup ................................... 47
LDAPserverprocedures................................... 47
SettinguptheLDAPuserdirectory ............................ 47
TestingtheLDAPuserdirectoryconnection......................... 47
SettinguptheLDAPschema............................... 47
SettingupanLDAPfailoverserver ............................ 48
TestingtheLDAPfailoverserverconnection ........................ 48
Certificateprocedures ................................... 48
Creating a certificaterequest .............................. 48
Creating a server certificatefortheSKM ......................... 48
Creating a client certificate ............................... 50
Creating a self-signed certificate............................. 51
Installing a certificate.................................. 51
Installing a certificatechain............................... 52
Downloading a certificate................................ 52
CertificateAuthority(CA)procedures............................. 53
Adding a CA certificatetothetrustedCAlist ....................... 53
Removing a CA certificatefromthetrustedCAlist ..................... 53
Creating a new trusted CA list profile........................... 53
Deleting a trusted CA list profile............................. 54
Signing certificaterequestswithalocalCA ........................ 54
Viewing the certificatessignedbyalocalCA ....................... 54
DownloadingalocalCA................................ 54
DeletingalocalCA .................................. 55
CreatingalocalCA.................................. 55
Creatingaself-signedrootCA.............................. 55
CreatinganintermediateCArequest........................... 55
Installing a CA certificate................................ 56
Removing a CA certificate ............................... 56
FIPSstatusserverprocedures ................................ 57
EnablingtheFIPSstatusserver.............................. 57
ViewingtheFIPSstatusreport .............................. 57
KMSserverprocedures................................... 57
EnablingSSL ..................................... 57
Enabling key and policy configurationbyclientapplications................. 58
EnablingtheLDAPserver................................ 58
Enablingpasswordauthentication ............................ 58
Enabling client certificateauthentication.......................... 58
Configuringtheuseraccountlockoutsettings........................ 59
Clusteringprocedures ................................... 59
Creatingacluster ................................... 59
Joiningacluster.................................... 59
Synchronizingwithaclustermember........................... 60
SettingupSSLinacluster................................ 60
Removingadevicefromacluster............................. 61
Upgradingacluster .................................. 61
Deletingacluster ................................... 61
Dateandtimeprocedures.................................. 61
SettingthedateandtimeontheSKM........................... 61
ConfiguringanNTPserverconnection .......................... 62
ManuallysynchronizingwithanNTPserver ........................ 62
IPauthorizationprocedures................................. 62
SpecifyingwhichclientscanconnecttotheSKM...................... 62
SNMPprocedures..................................... 63
ConfiguringSNMPv1/v2ontheSKM .......................... 63
4
Komentáře k této Příručce