Remote Installation of Cryptographic Services

Refer to the following topics for information on installing MCP Cryptographic Services remotely as appropriate for your system type.

Libra 4300/6300/8300 and FS600 System Types

Note: If you do not have a share set up, use the sharing of Drive C in the RDP session. You can load the Unisys MCP Cryptographic Services x64.msi to the C drive of the workstation you are using to RDP to the SDD. Once the connection to the SDD is made, you will see your local workstation C drive at the SDD and can copy the file off of it.

To perform a remote installation of SECURE-TRANSPORT, perform the following steps:

  1. Connect to the SDD at the remote site.

  2. If the MIM-update date stamp is 12/15/14 or newer, skip to step 4. If the CryptoServices package is older than 12/15/14 or not present, continue with step 3.

  3. If the CryptoServices package is not present on the remote SDD, perform the following steps:

    1. Delete the following folder:

      C:\Unisys\Installation\Update\Cryptography\Crypto

      This folder may also be named:

      C:\Unisys\Installation\Update\Crypto\Crypto
    2. Copy CryptoServices.exe from the local directory to the SDD at the remote site location or download Cryptography-2015.01.30.165133.exe from the Support website.

    3. Run CryptoServices.exe on the remote SDD and accept default values for the unzip location.

      This creates the following folder:

      C:\Unisys\Installation\Update\Cryptography\Crypto
  4. Copy the Unisys MCP Cryptographic Services x64.msi ONLY from the root directory of the MCP Cryptography Services CD to the folder of the remote SDD:

    C:\Unisys\Installation\Update\Cryptography\Crypto
  5. Open PowerShell on the remote SDD.

  6. Enter .\MIM-UPDATE.ps1 - reset Cryptography.

  7. Select .\MIM-UPDATE.ps1.

  8. Enter the ID number of PMM-0-EME-1 or ISM-0-IOE-1.

  9. Provide your credentials.

    At this point, the installation will be selecting files from:

    C:\Unisys\Installation\Update\Cryptography\Crypto
  10. After the first environment is updated, the MIM-update prompts you to update the next environment. Install the update to all PMM and ISM environments.

  11. Reboot each updated environment.

Libra 6400/8400, Libra 4500/6500/8500, FS601, and FS800 System Types

Using eMIM-update, security administrators can perform the remote installation of Cryptographic Services. This procedure is extremely beneficial for remote disaster recovery and dark-room sites. As part of the installation procedure, a local directory is used for the eMIM-update.

To perform the remote installation of SECURE-TRANSPORT, perform the following steps:

  1. Connect to the Operations Server.

  2. Copy the Unisys MCP Cryptographic Services x64.msi file from the SECURE-TRANSPORT release DVD to the file folder that is used by the eMIM-update:

    C:\Unisys\Installation\eUpdate\Cryptography\Crypto
  3. Open PowerShell on the Operations Server by clicking the icon on the Windows task bar. If the icon is not present, PowerShell can be executed by selecting Run... from the Windows Start menu, and entering powershell.exe.

    Note: It may be necessary to set the working location to C:\Unisys\Installation. If the current working location is set to a different location, such as C:\Users\UserName, the working location will need to be changed. This can be done by entering the following command at the prompt in the PowerShell window: cd c:\Unisys\Installation.
  4. Enter the command .\eMIM-Update.ps1 at the prompt in the PowerShell window.

  5. The PowerShell window displays the eMIM-Update Package Selection options. Each available software package is displayed along with a corresponding number. Find Cryptography from the available software and enter the corresponding number into the PowerShell window.

  6. eMIM-Update initializes for a short period of time. Following the initialization, the PowerShell window displays the name of the update Package (Cryptography) and three columns: Job, Partition, and Status. The PowerShell window also displays the Elapsed Install Time and MIM Command> where the next command is entered. The user is prompted for an appropriate usercode and password.

  7. Enter the command StartJob All at the MIM Command> prompt in PowerShell.

When all steps are complete, the installation of Cryptographic Services is initiated on each environment. The status column displays information relevant to the installation process on each environment. The installation process is complete when each ISM and PMM displays the status as "Done", and the eMIM-Update automatically performs clean-up activities and exit. When the eMIM-Update completes, you can close the PowerShell window and reboot each updated environment. You may also remove the CryptoServices.exe file, and the directory created by the executable that contained the extracted .msi files on the Operations Server.