KB Article #102239
VA - How to Configure VA Password for AEP Hardware Security Module
Summary
The article provides information about Configuring the Password for AEP Hardware Security Module and Validation Authority.
Details
Follow these steps to configure AEP’s HSM with Validation Authority; as AEP’s HSM password requires a numeric PIN, while Validation Authority setup requires at least one alpha character?
Initial Setup/Configuration
- Install and Complete a Basic Initial Setup Using VA's Self-Signed OCSP Certificate
- Change the Password Rules to Require No Alpha Characters
- Click on User Settings
- Click on General Settings
- Change "Minimum number of alphabetic characters in password:" from "1" to "0"
- Click Submit General User Data
- Click on General Settings
- Click on User Settings
Configuring for AEP Hardware Security Module
- Reset the VA Server Password to Match the AEP Password
- Click on Keys and Certificates
- Click on Change Server Password
- Fill in "Enter Current Server Password (leave blank if no password is set):"
- Fill in "Enter New Password:"
- Fill in "Confirm New Password:"
- Click on Submit
- Click on Change Server Password
- Click on Keys and Certificates
- Generate the OCSP Signing Key/Certificate
- Click on Keys and Certificates
- Click on Create/Import Private Key
- Select Default OCSP Response Signing
- Click on Submit Key Type
- Select Generate/Import Hardware Key on custom PKCS11 provider.
- Select Vendor: AEP
- Click on Submit Key Generate Technique
- Select either Generate new private key or Import previously generated private key
- Click on Submit Key Generation Or Import
- For Generating new private key
- Fill in Criteria
- Click on Submit
- Select Default OCSP Response Signing
- Click on Create/Import Private Key
- Click on Keys and Certificates
- Reset the VA Server
- Click on Start/Stop Server
- Click on Stop Server
- Click on Start Server
- Click on Start/Stop Server
- Finished!
NOTE:
AEP HSM module may require changes in file moves, environmental variables, etc…
Please contact AEP’s support department for further assistance.
Related Articles
- VA - Hardware Securit Modules interfacing with VA (Article# 5221)
- VA - How to Configure LunaSA Hardware Security Module for VA (Windows) (Article# 5262)