Brocade Network Advisor SAN User Manual v12.0.0 (53-1002696-01, April 2013)

556 Brocade Network Advisor SAN User Manual
53-1002696-01
Steps for connecting to an ESKM/SKM appliance
20
Registering the ESKM/SKM Brocade group user name and password
The Brocade group user name and password you created when configuring a Brocade group on
ESKM/SKM must also be registered on each encryption node.
NOTE
This operation can be performed only after the switch is added to the encryption group.
1. Select Configure > Encryption from the menu task bar to display the Encryption Center
dialog box (Refer to Figure 185 on page 526).
2. Select the group leader switch from the Encryption Center Devices table, then select Switch >
Key Vault Credentials from the menu task bar.
The Key Vault Credentials dialog box displays (Figure 197).
FIGURE 197 Key Vault Credentials dialog box
The dialog box contains the following information:
Primary Key Vault: Primary Key Vault is preselected. ESKM/SKM key vaults are clustered,
so only one set of credentials is needed.
Secondary Key Vault: Secondary Key Vault is active only if you are using a TEKA key vault.
User Name: Enter a user name for the group leader.
User Group Name: Displays the selected User Group Name.
Password: Enter a password for the group leader.
Re-type Password: Re-enter the password for verification.
3. Enter the Brocade user name and password, then re-enter the password for verification.
4. Repeat the procedure for each node.
The following rules apply for ESKM/SKM:
Initially, the user name and password are created when a Brocade user group is created
on ESKM/SKM. The switch user name and password must match the user name and
password specified for the Brocade group.
The same user name and password must be configured on all nodes in an encryption
group. This is not enforced or validated by the encryption group members, so use care
when configuring the user name and password to ensure they are the same on each node.
Different user names and passwords can never be used within the same encryption group,
but each encryption group may have its own user name and password.