Certificate configuration and authorization
Before configuring any certificate to be used with NetBackup, you should do certain configurations on the external KMS server to ensure that NetBackup has the required permissions to perform key-specific operations. Configuration steps may vary for different external KMS solutions.
Ensure the following:
An entity (user) is created in the external KMS that represents NetBackup primary server.
The primary server host has a certificate that the external KMS server trusts.
The certificate common name (CN) is associated with the entity that represents the primary server.