Product Documentation

To use the KMTool, the following requirements must be met:

  1. All three (3) Key Custodians and the Domain Administrator must be physically available at a location where the two appliances are available; this process can only be executed on the console of the appliances and cannot be executed remotely
  2. The KCs and the DA must have their USB flash-drives with their credentials for authorizing the key-migration from one appliance to another
  3. The TPMs on both appliances must have already been initialized using the installation wizards
  4. The TPMs on both appliances must have already been activated using the Key Custodian SetPIN Tool
  5. The additional appliance must have been configured as a MySQL replication-slave and should have replicated all objects from the Primary appliance
  6. The black-colored USB token containing the Migration Authority Storage Key (MASK) of the target appliance must be available