Skip to main content

Manage authentication using KMIP servers

Contributors netapp-pcarriga

With ONTAP 9.8 or later, you can use Key Management Interoperability Protocol (KMIP) servers to manage authentication keys.

Steps
  1. Add a new controller:

    security key-manager external enable

  2. Add the key manager:

    security key-manager external add-servers -key-servers key_management_server_ip_address

  3. Verify that the key management servers are configured and available to all nodes in the cluster:

    security key-manager external show-status

  4. Restore the authentication keys from all linked key management servers to the new node:

    security key-manager external restore -node new_controller_name