See section Create a Data Domain Host Certificate and complete all related steps before performing the steps below.
-
Copy the host certificate signing request (
CertificateSigningRequest.csr) from the Dell DD for signing with the ESKM local CA. The following command can copy the CSR to a Linux machine.
$scp sysadmin@<DDServerIP>:/ddvar/certificates/CertificateSigningRequest.csr
-
Open the ESKM Management Console, click the Security tab, and then click on the Local CAs link in the Certificates & CAs section.
-
Select the previously created CA certificate name from the Sign with Certificate Authority.
-
Select the radio button Client in the Certificate Purpose section.
-
Copy the host certificate content to the Certificate Request box.
Sign Certificate Request
-
Click on the Sign Request button.
Signed Host Certificate Details
-
Note down the common name and copy the signed certificate content to create a KMIP user.
-
Click on the Download button to download the signed host certificate file.