NetBackup and Veritas Appliances Hardening Guide
- Top recommendations to improve your NetBackup and Veritas appliances security posture
- Steps to protect Flex Appliance
- Managing single sign-on (SSO)
- About lockdown mode
- Configuring an isolated recovery environment on a WORM storage server
- Steps to protect NetBackup Appliance
- About single sign-on (SSO) authentication and authorization
- About authentication using smart cards and digital certificates
- About data encryption
- About forwarding logs to an external server
- Steps to protect NetBackup
- Configure NetBackup for single sign-on (SSO)
- Configure user authentication with smart cards or digital certificates
- Access codes
- Workflow to configure immutable and indelible data
- Add a configuration for an external CMS server
- Configuring an isolated recovery environment on a NetBackup BYO media server
- About FIPS support in NetBackup
- Workflow for external KMS configuration
- Workflow to configure data-in-transit encryption
- Workflow to use external certificates for NetBackup host communication
- About certificate revocation lists for external CA
- Configuring an external certificate for a clustered primary server
- Configuring a NetBackup host (media server, client, or cluster node) to use an external CA-signed certificate after installation
- Configuration options for external CA-signed certificates
- ECA_CERT_PATH for NetBackup servers and clients
- About protecting the MSDP catalog
- How to set up malware scanning
- About backup anomaly detection
ECA_KEY_PASSPHRASEFILE for NetBackup servers and clients
The ECA_KEY_PASSPHRASEFILE option specifies the path to the text file where the passphrase for the external certificate's private key is stored.
You should specify the ECA_KEY_PASSPHRASEFILE option only if the certificate's private key is encrypted.
See ECA_PRIVATE_KEY_PATH for NetBackup servers and clients.
Note:
You should not specify the ECA_KEY_PASSPHRASEFILE option if you use Windows certificate store.
Note:
Do not use the ECA_KEY_PASSPHRASEFILE on the MSDP servers that are used for MSDP direct cloud tiering as it is not supported with MSDP direct cloud tiering.
Table: ECA_KEY_PASSPHRASEFILE information
Usage | Description |
---|---|
Where to use | On NetBackup servers or clients. |
How to use | Use the nbgetconfig and the nbsetconfig commands to view, add, or change the option. For information about these commands, see the NetBackup Commands Reference Guide. Use the following format: ECA_KEY_PASSPHRASEFILE = Path to the passphrase file |
Equivalent UI property | No equivalent exists. |