Chapter 11 System Management
11.2 Functions in the Action Area for System
ETERNUS Web GUI User’s Guide
Copyright 2013 FUJITSU LIMITED P2X0-1090-10ENZ0
787
3 Click the [OK] button.
→ Setting of the SSH server key starts.
4 Click the [Done] button to return to the [Network] screen.
End of procedure
11.2.3.15 Create Self-signed SSL Certificate
This function performs settings for creating the SSL server key and the self-signed SSL certificate to be used
when encrypting communication using Secure Socket Layer (SSL).
SSL is used when accessing from GUI via the HTTPS connection.
After setting the SSH server key, the information must be updated in the ETERNUS DX Disk storage
system before being accessed from CLI via the SSH connection. Log out from CLI and wait a few
minutes before logging in again.
• The HTTPS connection from GUI is disabled in the factory settings.
• There are two types of SSL certificate formats: the "self-signed SSL certificate" and the "SSL server
certificate". The "self-signed SSL certificate" is created by using this function and the "SSL server
certificate" is created by using the procedure in "11.2.3.16 Create Key/CSR" (page 790)
. Register one of
the certificates in the ETERNUS DX Disk storage system when using the HTTPS connection.
• After the SSL server key and the self-signed SSL certificate have been created, the information must be
updated in the storage system before accessing from GUI via the HTTPS connection. Log out from GUI and
wait a few minutes before logging in again.
• The self-signed SSL certificate must be registered on the browser in the setting PC. Until the registration
has been completed, a warning message is displayed when accessing from GUI via the HTTPS connection.
• Refer to "Appendix C Installing the Security Certificate" (page 981)
for procedure to install the self-signed
SSL certificate.
• When using the key server for SED authentication key management , a self-signed SSL certificate or an
SSL server certificate is required to establish the communication between the ETERNUS DX Disk storage
system and the key server. These certificates are used as trusted SSL certificates of the ETERNUS DX Disk
storage system. When using the key management server linkage function, create the self-signed SSL cer-
tificate for the ETERNUS DX Disk storage system. The created self-signed SSL certificate is transferred to
the key server from the ETERNUS DX Disk storage system when the key is updated. Refer to "11.2.6.9
Update SED Authentication Key" (page 849) for details.