NetBackup™ Web UI Administrator's Guide
- Introducing the NetBackup web user interface
- Monitoring and notifications
- Section I. Configuring hosts
- Section II. Configuring storage and backups
- Configuring storage
- Managing protection plans
- Managing classic policies
- Managing backup images
- Configuring storage
- Section III. Managing credentials
- Managing credentials for workloads and systems that NetBackup accesses
- Managing credentials for workloads and systems that NetBackup accesses
- Section IV. Managing security
- Security events and audit logs
- Managing security certificates
- Managing host mappings
- Managing user sessions
- Managing the security settings for the primary server
- About trusted primary servers
- Access keys
- Configuring authentication options
- Section V. Managing role-based access control
- About role-based access control in NetBackup
- Configuring RBAC roles
- Configuring RBAC
- Default RBAC roles
- Configuring RBAC
- RBAC permissions
- Global > NetBackup management
- Global > Security
- Global > Storage
- Assets
- Manage access
- Section VI. Managing detection and reporting
- Managing deployment
- Managing Resiliency Platforms
- NetBackup SaaS Protection
- NetBackup Flex Scale
- Managing Bare Metal Restore (BMR)
- Troubleshooting the NetBackup Web UI
Add a credential for an external KMS
This type of credential allows you to access an external KMS server that you have configured.
To add a credential for an external KMS
- On the left, click Credential management.
- On the Named credentials tab, click Add and provide the following properties:
Credential name
Tag
Description (for example: This credential is used to access the external KMS.)
- Click Next.
- Select External KMS.
- Provide the credential details that are needed for authentication.
These details are used to authenticate the communication between the NetBackup primary server and the external KMS server:
Certificate - Specify the certificate file contents.
Private key - Specify the private key file contents.
CA Certificate - Specify the CA certificate file contents.
Passphrase - Enter the passphrase of the private key file.
CRL check level - Select the revocation check level for the external KMS server certificate.
CHAIN - The revocation status of all the certificates from the certificate chain are validated against the CRL.
DISABLE - Revocation check is disabled. The revocation status of the certificate is not validated against the CRL during host communication.
LEAF - The revocation status of the leaf certificate is validated against the CRL.
See the NetBackup Security and Encryption Guide for more information on external KMS configuration.
- Click Next.
- Add a role that you want to have access to the credential.
Click Add.
Select the role.
Select the credential permissions that you want the role to have.
See Credentials.
- Click Next and follow the prompts to complete the wizard.