Go to main content

Oracle® ZFS Storage Appliance Administration Guide, Release OS8.7.x

Exit Print View

Updated: November 2018
 
 

Configuring OKM Keystore Encryption (BUI)

To configure encryption using the Oracle Key Manager (OKM), first set up the Key Manager Server information, and then create keys for assigning to encrypted shares. For information about encryption properties, see Encryption Properties.


Note -  If the appliance is clustered, do not use the "one time passphrase" setting when creating the OKM server agent otherwise registration on the other cluster node will fail and keys will not be available on failover.

To create a key, you provide the name to be used for assigning the key to projects or shares.

  1. To configure the OKM keystore, go to the Shares > Encryption BUI page.
  2. Click OKM.

    The OKM keystore information is displayed.


    image:OKM key store
  3. To configure the server information, type the following information:
    • Key Manager Server

    • User Agent ID

    • Registration PIN

  4. To save the server information, click Apply, or to discard the changes, click Cancel.
  5. To create a key, click the Add item icon image:Image showing the add icon .

    The New Key dialog box is displayed.

  6. Type a name for the key.
  7. To save the key, click Add, or to discard the changes, click Cancel.

    When you click Add, the new key appears in the list of keys with the creation date.

Related Topics