ADMINISTERING


Creating a shared key in a credential store

To share a key to be used to encrypt DAOS objects across servers, create a shared key in a credential store.

Before you begin


About this task

You can choose AES-128 or AES-256 encryption for the shared key. AES-128 provides strong security. AES-256 provides stronger security but may cause a small decrease in performance during object encryption and decryption.

Procedure

1. To create the shared key in credstore.nsf, enter one of the following commands from the console of any Domino server that uses the credential store:


2. The command output shows the hash of the shared key that uniquely identifies it within the DAOS code. Optionally, enter the following command to verify that the shared key is created:
What to do next