
All CLIMs to be registered must be selected and moved from the upper to the lower list using the
Add or Add All buttons (the Ctrl key can be used to select multiple CLIMs). Remove or Remove All
can be used to remove CLIMs from the list to be registered.
Once all CLIMs to be registered have been moved to the lower list, click Continue to proceed to
the next step of the guided procedure: Configuring a Key Manager Cluster.
Configuring a Key Manager Cluster
NOTE: The Key Manager Cluster must be created by an administrator through the Key Manager
interface. For more information, see the NonStop Volume Level Encryption Guide. This step of the
guided procedure allows you to configure the existing cluster by organizing the Key Managers
into tiers. Although all Key Managers in a cluster are peers and share all keys and clients, the
clients can be configured to view the cluster in tiers and prefer nearby Key Manager Cluster
members for key services. This is advantageous for optimizing request latency and network traffic.
Upon selecting the CLIMs in the Storage CLIM Selection dialog box and clicking Continue, the
Encryption Key Manager Cluster Configuration Information dialog box is displayed. In this dialog
box, you will:
• Define Key Manager Tiers for CLIMs
• Enter Credentials and TCP/IP Stack
• Check Connectivity to Key Managers
Defining Key Manager Tiers for CLIMs
This step of the guided procedure allows you to configure the CLIMs view of an existing cluster by
organizing the Key Managers into multiple levels of load-balancing groups. A load-balancing
group is a group of Key Managers the CLIMs can connect to. The multi-tier feature provides for
additional failover support by allowing CLIMs to failover to the next tier if the higher tier becomes
unavailable. Cluster nodes that are located in the same geographical location are recommended
to be added to the same tier, with the first tier containing local or nearby Key Managers.
296 Register CLIMs with Key Managers Guided Procedure Online Help
Comentarios a estos manuales