With KMIPCLI, you can manage your Cryptographic Security Platform Vault for KMIP with a shell script. All vault management operations, including user management, KMIP key operations, HSM Management, and KMIP Client certificate management can be performed with KMIPCLI.
Important: KMIPCLI is supported on Linux VMs with python installed. It is not supported on Windows.
Before using KMIPCLI, ensure the following:
The Cryptographic Security Platform Vault for KMIP must be created by the Cryptographic Security Platform Vault Administrator.
The KMIPCLI user must be an administrator for the Cryptographic Security Platform Vault for KMIP and must have the login API URL for that vault.
The API URL is located in the Cryptographic Security Platform Vault Management application, in the Details section for the Cryptographic Security Platform Vault for KMIP.
- If the KMIPCLI is not executable, ensure that you run the
chmod +x kmipclicommand to make it executable. You must download the CA Certificate to log in to the Cryptographic Security Platform Vault for KMIP. To do so, do one of the following:
- Enter the following command:
$wget https://<kcv ip>/v4/ca_certificate/ --no-check-certificate -O ca.cert. Log into the Cryptographic Security Platform Vault Management webGUI and select ? > Download CA Certificate.
- Enter the following command: