Change Key Manager
DPG uses the CipherTrust Manager as a trusted key manager.
For Kubernetes deployment with Helm
In the
values.yaml
file, underconfiguration
, update the value of kms with a valid IP address/hostname of the CipherTrust Manager.Update your DPG deployment using the following command.
helm upgrade <helm-chart-name> <path-of-helm-chart> -n <namespace>
For Kubernetes deployment without Helm
In your deployment file, in the
data
section ofConfigMap
, update the value ofKMS
variable with a valid IP address/hostname of the CipherTrust Manager.Update your DPG deployment using the following command.
kubectl replace -f `<deployment_filename>` -n `<namespace>
For Standalone deployment
Stop the existing container.
In the environment variable, update the
KMS
field with a valid IP address/hostname of the CipherTrust Manager and restart the container using the following command.docker run -d --name < name> -p <host-port>:<DPG_port> -e "KMS=<new_ipaddress/hostname>" -e "TLS_ENABLED=true" -e "CERT_PATH=<cert value>" -e "KEY_PATH=<key value>" -e "REG_TOKEN=<registrationtoken>" -e "DESTINATION_URL=<destinationurl>" -e "DPG_PORT=<DPG_port>" <DPG-image-name>