Enhancements in 5.1.2-SP1

Prev Next

Install & Upgrade

  • ORION-174460: Added the ownerId field to the metadata included for each VAST-generated encryption key.

  • ORION-187385, ORION-173981: Enhanced the cluster creation routines to run a validation of the user-supplied EKM certificate and private key before starting the cluster creation procedure.

  • ORION-173989: Before starting the cluster create task, connectivity to each of the user-supplied EKM server IPs is verified. If one of the servers is not accessible, a connection timeout error is raised and cluster deployment cannot proceed.

  • ORION-173983: Added an ability to load EKM certificates from the /vast/bundles/ directory during cluster creation. To do so, use the following options on the cluster create command:

    • --ekm-certificate-file

    • --ekm-private_key-file

    • --ekm-ca-certificate-file

  • ORION-173226: Updated the logic behind EKM port validation to allow specifying port 443 when creating a cluster with external key management through Thales Group CipherTrust Data Security Platform.

  • Added support for Thales Group CipherTrust Data Security Platform version 2.14.

VMS

  • Added a major alarm to be raised in case a TLS certificate fails OCSP validation.

Support & Call Home

  • ORION-180105: Removed the Customer, Site, Location and Prod Mode settings from the call home settings dialog because these settings are now made via Uplink.