Configuring a KeyControl Cluster using nShield Connect HSM Client

After you have configured a single node cluster for the nShield Connect HSM, you can quickly add a new node.

Note: The following instructions are specific to the nShield Connect HSM from nCipher.

  1. Use the webGUI to join the new cluster to your existing cluster that is configured with nShield Connect HSM.

    For complete instructions, see Joining or Re-joining a KeyControl Cluster.

  2. After the process is finished, log in to the new cluster node using the webGUI.
  3. Select the Settings tab and then click HSM Server Settings.

    You should see the nShield Connect HSM Server Settings page with all of the settings imported from the original cluster node.

  4. Click the Client List tab to view the cluster nodes.
  5. Copy the IP address and the keyhash of the node that you just added, and paste them in a text window.
  6. Use the IP and hash to authenticate KeyControl on nShield. Please see your nShield documentation.
  7. Return to the nShield Connect Server Settings page for the new cluster node.
  8. Click the Locate Admin Key button to ensure that the new node is now fully connected to nShield Connect HSM.