Notes on updating the signed certificate to the SVP

System Administrator Guide for VSP 5000 Series

Version
90-09-2x
Audience
anonymous
Part Number
MK-98RD9009-16

Read the following notes about uploading the signed certificate to the SVP:

  • While the SVP server certificate is being updated, tasks that are being executed or scheduled for execution on Device Manager - Storage Navigator are not executed.
  • Certificates for RMI communication are updated asynchronously (within approximately two minutes).
  • If an SVP certificate is updated during Hitachi Command Suite setup operation, the Hitachi Command Suite setup operation will result in an error.
  • Update of the SSL certificate gives a great influence to the system and may lead to SVP failure. Therefore take sufficient care about the content of the certificate and private key to be set.
  • After the certificate update is complete, depending on the environment, the SVP web server can take 30 to 60 minutes to restart. When it takes that long, an internal server error occurs, and the update completion dialog box does not display. However, the certificate update is complete.
  • When using a certificate with a key type of ECDSA and a key length of secp521r1, the Tool Panel dialog box might not open depending on the web browser of the HDvM - SN management client. Take the following actions for each web browser:
    • Internet Explorer

      Configure the group policy setting from the management client. For details, see Configuring the ECC curve order.

    • Microsoft Edge or Google Chrome

      The certificate with a key type of ECDSA and a key length of secp521r1 cannot be used as of January 2022. If the key type is ECDSA, the key length must be less than secp521r1. For more information about future availability, check the support status of the security settings for the web browser because whether it can be used in the future depends on the web browser specifications.

    • Firefox

      The problem that the Tool Panel dialog box might not open does not occur.

  • When using a certificate with a key type of ECDSA and a key length of secp521r1, HDvM - SN might not open depending on the web browser of the HDvM - SN management client. Take the following actions for each web browser:
    • Internet Explorer, Microsoft Edge, or Google Chrome

      Configure the group policy setting from the management client. For details, see Configuring the ECC curve order.

    • Firefox

      The problem that the Tool Panel dialog box might not open does not occur.