Previous Topic: Create a FIPS 140-2 Encryption KeyNext Topic: (Optional) Integrate with SiteMinder


Create an Encryption Parameters File

During installation of the CA IdentityMinder server, you have the option to set encrypting parameters. You use this feature to customize encryption code by supplying user-defined parameters such as the key length for every encryption algorithm used by CA IdentityMinder, seed size and IV size for FIPS encryption key and the whole keys for non-FIPS algorithms - RC2 and PBE.

The parameters should be supplied as a properties file with the following possible keys: PBKey, PBSalt, PBKeySize, RCKey, RCKeySize, AEKey, AEKeySize, AESeedSize, AEIVSize.

Valid key size values allowed by the encryption algorithms are as follows:

Important! Use the same Encrypting Parameters in all installations. You should not change encrypting parameters after installation.