Using Web Administration
You can use the instructions provided here to manage security properties using Web Administration Tool.
About this task
Expand the Server administration category in the navigation area of the Web Administration Tool and click Manage security properties tab. Next, click the PKCS#11 settings tab. The PKCS#11 settings panel is displayed. This panel is displayed only if the root DSE search on ibm-supportedCapabilities returns the PKCS#11 interface support OID 1.3.18.0.2.32.67.
Note: For the
settings specified in this panel to take effect, you must select the Enable
PKCS#11 interface support check box in the Settings panel
under Manage security properties category.
To set
PKCS#11 interface supported hardware:
- Select the Enable crypto hardware key storage check box to specify the key storage location as the crypto hardware.
- Select the required acceleration facility of the crypto hardware
by selecting the Symmetric cipher, Digest, or Random
data generator check box. Note: You can select one or more check boxes under the Accelerator mode options section.
- In the Crypto hardware library path and file name text box, specify the library path of the crypto hardware driver to be accessed using the PKCS#11 interface.
- In the Token password text box, specify the password to be used for accessing the crypto hardware slot.
- In the Confirm password text box, reenter the password.
- In the Token label text box, specify the token label of the crypto hardware’s slot to be accessed.
- When you are finished, do one of the following steps:
- Click OK to apply your changes and exit this panel.
- Click Apply to apply your changes and stay on this panel.
- Click Cancel to exit this panel without making any changes.
Note: You must restart the server for the changes to take effect.