Configuring Transparent cloud tiering with certificate-based authentication and locked vaults

This topic provides how to configure Transparent cloud tiering with certificate-based authentication and locked vaults.

Be sure to keep a backup copy of the source keystore that you used to import the private key and certificates. The mmcloudgateway account delete command removes the private key and certificates from the trust store.

  1. Get the client certificate for IBM Cloud® Object Storage Accesser.
  2. Create a cloud storage account by using the mmcloudgateway account create command. For more information, see Managing a cloud storage account.
  3. Create a cloud storage access point (CSAP) by using the mmcloudgateway containerPairSet create command. For more information, see Binding your file system or fileset to the Cloud service by creating a container pair set.
  4. Create a cloud service by using the mmcloudgateway cloudservice create command. For more information, see Creating Cloud services.
  5. Configure Cloud services with SKLM by using the mmcloudgateway keyManager create command. For more information, see Configuring Cloud services with SKLM (optional).
  6. Create a container pair set by using the mmcloudgateway containerpairset create command. For more information, see Binding your file system or fileset to the Cloud service by creating a container pair set.
  7. Perform migrate and recall operations by using commands or policies.