Installing Security Components

SSL/TLS, SSH, IPv6 (including IPsec), McpCryptoApi for User Applications, Kerberos Security, and Security Center are contained in the system software media supplied with your ClearPath MCP server. The MCP components are installed through the Simple Installation (SI) program or Installation Center. SSL/TLS, SSH, and IPv6 (including IPsec) are installed as part of the TCP/IP Network Provider.

All these MCP security products depend on the Operating Environment Encryption Option, which contains the Windows cryptography software (also referred to as MCP Cryptographic Services) and the MCP run-time keys that enable each MCP security product to use the cryptography software. Refer to the ClearPath MCP Software Product Catalog for instructions on ordering the Operating Environment Encryption Option.

MCP Cryptographic Services, which contains the CryptoProxy service and the Security Center Agent service, is installed to each cryptographic engine of the ClearPath MCP Environment. On Libra systems, the cryptographic engine can run in the Windows environments of the PMM and ISMs. On ClearPath MCP Software Series systems, the cryptographic engine runs as part of the Windows firmware environment.

Before installing any software, merge the MCP run-time keys into the master keys file on your MCP system.