Configuring OKM Keystore Encryption (BUI)

To configure encryption using Oracle Key Manager (OKM), first set up the key manager server information, and then create keys. For information about encryption properties, see Encryption Properties.

Note:

If the Oracle ZFS Storage Appliance system is clustered, do not use the "one time passphrase" setting when creating the OKM server agent. If you use the "one time passphrase" setting in this situation, registration on the other cluster node will fail and keys will not be available on failover.
  1. From the Shares menu, select Encryption.
  2. Click OKM.

    The OKM keystore information is displayed.


    OKM keystore information
  3. To configure the server information, type the following information:
    • Key Manager Server
    • User Agent ID
    • Registration PIN
  4. To save the server information, click APPLY.
  5. To create a key, click the add icon image showing the add icon next to Keys.

    The New Key dialog box is displayed.

  6. Type a name for the key.
  7. To save the key, click ADD.

    When you click ADD, the new key appears in the list of keys with the creation date.