Fujitsu DX80 S2/DX90 S2 Computer Drive User Manual


  Open as PDF
of 1066
 
Chapter 11 System Management
11.2 Functions in the Action Area for System
ETERNUS Web GUI User’s Guide
Copyright 2013 FUJITSU LIMITED P2X0-1090-10ENZ0
790
4 Click the [Done] button to return to the [Network] screen.
End of procedure
11.2.3.16 Create Key/CSR
This function performs settings for creating and exporting the SSL server key and the Certificate Signing
Request (CSR) which are used to acquire a SSL server certificate.
CSR is a certificate application form to submit to the certification authority.
The procedure to create a CSR is as follows:
Procedure
1 Click [Create Key/CSR] in [Action].
2 Specify the parameters, and click the [Create] button.
Key Length
Select the SSL server key length from "1024 bit", "2048 bit", and "4096 bit".
The SSL server key length is equivalent to the encryption level. In general, the longer the key is, the
higher the encryption level becomes (difficult to decrypt the encrypted data).
After registering the SSL server key or SSL server certificate, the information must be updated in the
ETERNUS DX Disk storage system before being accessed from GUI via the HTTPS connection. Log out
from GUI and wait a few minutes before logging in again.
Check the necessary items for authentication beforehand.
When using the key server for SED authentication key management , a self-signed SSL certificate or an
SSL server certificate is required to establish the communication between the ETERNUS DX Disk storage
system and the key server. These certificates are used as trusted SSL certificates of the ETERNUS DX Disk
storage system. When using the key management server linkage function, register the SSL server certifi-
cate for the ETERNUS DX Disk storage system. The registered SSL server certificate is transferred to the key
server from the ETERNUS DX Disk storage system when the key is updated. Refer to "11.2.6.9 Update SED
Authentication Key" (page 849) for details.
Refer to "11.2.3.17 Register SSL Certificate" (page 795) for detailed procedure to register the SSL server key
and SSL server certificate.