Technical data

40 Fabric OS Encryption Administrator’s Guide (DPM)
53-1002720-02
Creating an encryption group
2
Configuring key vault settings for RSA Data Protection Manager (DPM)
The following procedure assumes you have already configured the initial steps in the Configure
Switch Encryption wizard. If you have not already done so, go to “Creating an encryption group” on
page 35.
Figure 22 shows the key vault selection dialog box for DPM.
FIGURE 22 Select Key Vault dialog box for DPM
1. Enter the IPv4 IP address or host name for the primary key vault. If you are clustering DPM
appliances for high availability, IP load balancers are used to direct traffic to the appliances.
Use the IP address of the load balancer.
2. Enter the name of the file that holds the Primary Key Vault’s CA Key Certificate file, or browse
to the desired location. This file can be generated from the key vault’s administrative console.
3. If you are implementing encryption on data replication LUNs used by the EMC Symmetrix
Remote Data Facility (SRDF), you must select Enabled for REPL Support.
4. Click Next.
The Specify Certificate Signing Request File Name dialog box displays (Figure 23).