(1) Create a CSR (Certificate Signing Request).
You can create a CSR by performing the following operations:
Table 3-41 Web console
Item
Operation
Creating a CSR
Resources > Modules > All Modules > Server Blades >
Server Blades x > LPAR Manager tab > Edit button >
Certificate settings > Create CSR
Table 3-42 HVM management command (HvmSh)
Item
Command name
Creating a CSR
1
opr HvmCSR
Notes:
1
.
After creating the CSR, save the LPAR manager configuration information by
executing the
opr HvmSecureCmmConfigSave
command or the
opr SaveConfig
command.
The common name (CN) field in the CSR must uniquely identify the
instance of LPAR manager. When a CSR is created, a private key that
corresponds to the CSR is also created in LPAR manager. You cannot
create another instance of this private key.
The private key and server certificate that were just created are not used
until you register the signed server certificate in (3). Until you register the
certificate, the previous private key and server certificate remain in effect.
(2) Have a certificate signed by CA (certificate authority).
Send the created CSR to the CA to obtain the signed certificate.
(3) Register the server certificate signed by CA.
You can register a signed server certificate by performing the following
operations:
High Reliability Functions
3-35
Hitachi Compute Blade 500 Series Logical partitioning manager User's Guide