How to validate certificates for an External Key Manager
Applies to
- External Key Management (EKM)
- ONTAP 9
Description
When configuring an External Key Management solution in ONTAP, there are a few pieces of information that are needed in-order to ensure a secure connection between ONTAP (Client) and the EKM Device (Server)
The following will need to be installed into ONTAP before a secure connection can be established:
1. Client certificate AND the unencrypted private key associated with the client certificate
2. All Intermediate and Root CA certificates that signed the EKM Server certificate.
2. All Intermediate and Root CA certificates that signed the EKM Server certificate.
See "security certificate install" for more details