1sckmd(1M)               System Administration Commands               sckmd(1M)
2
3
4

NAME

6       sckmd - Sun cryptographic key management daemon
7

SYNOPSIS

9       /usr/platform/sun4u/lib/sckmd
10
11

DESCRIPTION

13       sckmd  is  a server process that resides on a high-end system domain to
14       maintain the Internet Protocol Security (IPsec)  Security  Associations
15       (SAs)  needed  to  secure communications between a Service Processor or
16       System Controller (SC) and platform management software running  within
17       a  domain. The cvcd(1M) and dcs(1M) daemons use these Security Associa‐
18       tions. See ipsec(7P) for a description of Security Associations.
19
20
21       The sckmd daemon receives SAs from the  Service  Processor  or  SC  and
22       installs  these  SAs in a domain's Security Association Database (SADB)
23       using pf_key(7P).
24
25
26       sckmd starts up at system boot time as an SMF service. The FMRI for the
27       sckmd service is:
28
29         svc:/platform/sun4u/sckmd:default
30
31
32
33
34       A domain supports only one running sckmd process at a time.
35

ATTRIBUTES

37       See attributes(5) for descriptions of the following attributes:
38
39
40
41
42       ┌─────────────────────────────┬────────────────────────────────────┐
43       │      ATTRIBUTE TYPE         │          ATTRIBUTE VALUE           │
44       ├─────────────────────────────┼────────────────────────────────────┤
45       │Availability                 │SUNWsckmx.u, SUNWsckmu.u, SUNWsckmr │
46       ├─────────────────────────────┼────────────────────────────────────┤
47       │Interface Stability          │Evolving                            │
48       └─────────────────────────────┴────────────────────────────────────┘
49

SEE ALSO

51       cvcd(1M),   dcs(1M),   ipsecconf(1M),   ipsecalgs(1M),   attributes(5),
52       ipsec(7P), ipsecah(7P), ipsecesp(7P), pf_key(7P)
53

NOTES

55       The sckmd service is used only on Sun Fire  high-end  systems  and  the
56       SPARC  Enterprise Server family. It provides a mechanism for exchanging
57       IPsec keys between a domain and its System Controller (SC)  or  Service
58       Processor.  These  platforms  use  IPsec  to  secure the communications
59       between the SC or Service Processor and certain platform-specific  dae‐
60       mons  in  the  domain.  Such  daemons  currently  include  cvcd(1M) and
61       dcs(1M).
62
63
64       The documentation for each platform that supports sckmd  describes  how
65       to  configure its use of IPsec for such communications. Also, the docu‐
66       mentation for each specific application describes how to configure  its
67       security  policies  and  IPsec  options in a manner appropriate for the
68       target platform. Refer to the platform- and application-specific  docu‐
69       mentation for detailed information.
70
71
72
73SunOS 5.11                        25 Apr 2006                        sckmd(1M)
Impressum