7
Using KVL 4000 in OTAR Systems
This chapter is applicable if your KVL is configured to support KMF operation.
The Motorola Over-the-Air Rekeying (OTAR) system is a secure communications system in which encryption keys
can be sent to subscriber units via radio transmission in addition to directly connecting a KVL to a radio to load
keys. OTAR provides flexibility and convenience in managing and administering encryption keys.
One of the infrastructure components in an OTAR system is the Key Management Facility (KMF). The KMF is a
Windows NT-based computer that is responsible for:
• Storing and managing the encryption keys for an OTAR system
• Initiating key transmissions to radios
Before using the KVL to perform tasks in an OTAR system, program several parameters, as described in
7.1 Setting Up the KVL for KMF Operations, page 7-1
The KVL can interface with the KMF to provide the following functions:
•
Transfer the encryption keys required by the OTAR system from the KVL to the KMF
– You load the
required keys into the KVL, connect the KVL to the KMF via a standard key load cable, and transfer the
keys (one at a time) to the KMF for storage and management (see
4.1 Loading a Selected Key, page 4-1
).
The KMF then transfers encryption keys to target devices via OTAR.
•
Download encryption keys from the KMF into the KVL
– Two methods are available for transferring
encryption keys when OTAR cannot be performed, such as for radios that do not support OTAR, radios that
are out of range, or radios that have not yet been initialized. The download from the KMF to the KVL
may be performed either by direct cable connection or through a modem connection. The two methods of
downloading keys are:
– Individual keys are downloaded to the KVL key database which are then loaded directly into target
devices (see
Chapter 4 KVL 4000 – Loading Encryption Keys into Target Devices
). This method requires
that you know the CKRs of the keys in the KVL key database.
– With the use of the Store and Forward ASTRO
®
25 feature, Key Management Messages (KMMs) –
usually containing encryption keys – are downloaded to the KVL that is in turn used to update target
devices. This operation does not require that you know the CKRs of the keys in the KVL database. This
simplifies the key loading procedure. (See
7.2.4 Updating a Target Device, page 7-15
7.1 Setting Up the KVL for KMF Operations
Before using your KVL to work with a KMF, program several KMF-related parameters.
Prerequisites:
Your KVL supports KMF operation.
6871018P37-F - January 2013
7-1
Summary of Contents for KVL 4000
Page 2: ......
Page 4: ......
Page 8: ......
Page 12: ......
Page 16: ......
Page 18: ......
Page 20: ......
Page 24: ......
Page 32: ......
Page 44: ......
Page 92: ......
Page 126: ......
Page 136: ......
Page 150: ......
Page 156: ......
Page 180: ......
Page 188: ......
Page 198: ......
Page 204: ......
Page 210: ......
Page 226: ......
Page 232: ......
Page 234: ......