ADSM-L

[ADSM-L] Cloning the Encryption Key manager for DR

2009-03-03 08:20:01
Subject: [ADSM-L] Cloning the Encryption Key manager for DR
From: Bill Boyer <bjdboyer AT COMCAST DOT NET>
To: ADSM-L AT VM.MARIST DOT EDU
Date: Tue, 3 Mar 2009 08:18:52 -0500
Does anyone have procedures for taking an existing EKM (IBM'S version) and
cloning it to take to D/R for testing? I have a client that needs to do
this. They had IBM come in and configure a primary and secondary EKM server
for their TS3310 library and iSeries servers. Not TSM at this stage although
they hope to move TSM to LTO4 and the TS3310 later this year. One of the
operations staff that was there for the install (doesn't work here anymore)
sorta kinda remembers the IBM'r taking the entire EKM directory, ZIP'ing it
up. He then copied this to the 2nd server, unZip'd it and ran a couple
commands to install the service. Unfortunately nobody there can remember
this or find any notes about it. The IBM'r said they could even take that
ZIP file, put it on an encrypted thumb-drive and store it in their D/R box
offsite. It's just no one can find the documentation from IBM on how to
re-create the EKM from the ZIP file.



Bill Boyer

<Prev in Thread] Current Thread [Next in Thread>