Veritas Storage Foundation 5.1 SP1 Cluster File System Installation Guide (5900-1510, April 2011)

Table 7-1 lists the preparatory tasks in the order which the AT and VCS
administrators must perform. These preparatory tasks apply only when you use
an external root broker system for the cluster.
Table 7-1
Preparatory tasks to configure a cluster in secure mode (with an
external root broker)
Who performs
this task
Tasks
VCS administratorDecide one of the following configuration modes to set up a cluster in
secure mode:
Automatic mode
Semi-automatic mode
Manual mode
AT administratorInstall the root broker on a stable system in the enterprise.
See Installing the root broker for the security infrastructure
on page 77.
AT administratorTo use the semi-automatic mode or the manual mode, on the root
broker system, create authentication broker accounts for each node
in the cluster.
See Creating authentication broker accounts on root broker system
on page 78.
The AT administrator requires the following information from the
VCS administrator:
Node names that are designated to serve as authentication brokers
Password for each authentication broker
AT administratorTo use the semi-automatic mode, create the encrypted files (BLOB
files) for each node and provide the files to the VCS administrator.
See Creating encrypted files for the security infrastructure
on page 79.
The AT administrator requires the following additional information
from the VCS administrator:
Administrator password for each authentication broker
Typically, the password is the same for all nodes.
AT administratorTo use the manual mode, provide the root_hash file
(/opt/VRTSat/bin/root_hash) from the root broker system to the VCS
administrator.
Preparing to configure SFCFS
Preparing to configure the clusters in secure mode
76