Install & Upgrade
ORION-174460: Added the
ownerIdfield to the metadata included for each VAST-generated encryption key.ORION-187385, ORION-173981: Enhanced the cluster creation routines to run a validation of the user-supplied EKM certificate and private key before starting the cluster creation procedure.
ORION-173989: Before starting the cluster create task, connectivity to each of the user-supplied EKM server IPs is verified. If one of the servers is not accessible, a connection timeout error is raised and cluster deployment cannot proceed.
ORION-173983: Added an ability to load EKM certificates from the
/vast/bundles/directory during cluster creation. To do so, use the following options on thecluster createcommand:--ekm-certificate-file--ekm-private_key-file--ekm-ca-certificate-file
ORION-173226: Updated the logic behind EKM port validation to allow specifying port 443 when creating a cluster with external key management through Thales Group CipherTrust Data Security Platform.
Added support for Thales Group CipherTrust Data Security Platform version 2.14.
VMS
Added a major alarm to be raised in case a TLS certificate fails OCSP validation.
Support & Call Home
ORION-180105: Removed the Customer, Site, Location and Prod Mode settings from the call home settings dialog because these settings are now made via Uplink.