1sckmd(1M) System Administration Commands sckmd(1M)
2
3
4
6 sckmd - Sun cryptographic key management daemon
7
9 /usr/platform/sun4u/lib/sckmd
10
11
13 sckmd is a server process that resides on a high-end system domain to
14 maintain the Internet Protocol Security (IPsec) Security Associations
15 (SAs) needed to secure communications between a Service Processor or
16 System Controller (SC) and platform management software running within
17 a domain. The cvcd(1M) and dcs(1M) daemons use these Security Associa‐
18 tions. See ipsec(7P) for a description of Security Associations.
19
20
21 The sckmd daemon receives SAs from the Service Processor or SC and
22 installs these SAs in a domain's Security Association Database (SADB)
23 using pf_key(7P).
24
25
26 sckmd starts up at system boot time as an SMF service. The FMRI for the
27 sckmd service is:
28
29 svc:/platform/sun4u/sckmd:default
30
31
32
33
34 A domain supports only one running sckmd process at a time.
35
37 See attributes(5) for descriptions of the following attributes:
38
39
40
41
42 ┌─────────────────────────────┬────────────────────────────────────┐
43 │ ATTRIBUTE TYPE │ ATTRIBUTE VALUE │
44 ├─────────────────────────────┼────────────────────────────────────┤
45 │Availability │SUNWsckmx.u, SUNWsckmu.u, SUNWsckmr │
46 ├─────────────────────────────┼────────────────────────────────────┤
47 │Interface Stability │Evolving │
48 └─────────────────────────────┴────────────────────────────────────┘
49
51 cvcd(1M), dcs(1M), ipsecconf(1M), ipsecalgs(1M), attributes(5),
52 ipsec(7P), ipsecah(7P), ipsecesp(7P), pf_key(7P)
53
55 The sckmd service is used only on Sun Fire high-end systems and the
56 SPARC Enterprise Server family. It provides a mechanism for exchanging
57 IPsec keys between a domain and its System Controller (SC) or Service
58 Processor. These platforms use IPsec to secure the communications
59 between the SC or Service Processor and certain platform-specific dae‐
60 mons in the domain. Such daemons currently include cvcd(1M) and
61 dcs(1M).
62
63
64 The documentation for each platform that supports sckmd describes how
65 to configure its use of IPsec for such communications. Also, the docu‐
66 mentation for each specific application describes how to configure its
67 security policies and IPsec options in a manner appropriate for the
68 target platform. Refer to the platform- and application-specific docu‐
69 mentation for detailed information.
70
71
72
73SunOS 5.11 25 Apr 2006 sckmd(1M)