This section describes editing the SSL settings in Cisco DCNM-SAN Web Client.
You can only edit the SSL settings if you are logged into the DCNM-SAN Web Client of the DCNM-SAN server you configured as the CKMC.
To edit the SSL settings in the SME wizard, follow these steps:
2. Click the SME tab and select Key Manager Settings. The Key Manager Settings window is displayed.
4. In the KMC SSL settings area, select the SME KMC Trust certificate from the drop-down menu. This is the CA certificate.
Note You must copy the certs to the <install path>dcm\fm\conf\cert directory. Certificates in the conf\cert directory are listed in the drop-down menu only after DCNM-SAN server has been restarted.
5. From the drop-down menu, select the SME KMC Server certificate.
The keystore files that are stored in the KMC directory are listed in the drop-down menu.
6. Enter the server certificate password. Confirm the password.
7. Click Submit SSL Settings to apply the changes, or click Cancel. Save the settings.
To change the SSL settings again, click Edit SSL Settings.
Note After editing the SSL settings, restart the DCNM-SAN.
If On is selected in the Transport Settings during cluster creation, then SSL is enabled on KMC with the following results:
• New clusters are created. If Off is selected, cluster creation fails.
• Previously created clusters are updated by enabling SSL with trustpoint on the switches. KMC server connection state remains as none until the cluster is updated.
For more information, refer to “Selecting Transport Settings”.