Describes how to create the KMIP group and user to store cluster keys on the ESKM server.
You now need to create a KMIP user/object group pair to store your keys. As KMIP keys for data-fabric are cluster-specific, you should create a different KMIP user/object group pair for each cluster so that each cluster can only access its own KMIP keys.
To create a cluster-specific KMIP group:
KMIP.
Click Next.
The system displays a confirmation page to create two KMIP groups:
The system creates two KMIP groups. In this example, the
data-fabric cluster is named my.cluster.com. Therefore, the
system creates the KMIP group pair:
mapr-my.cluster.com object group, and
mapr-my.cluster.com_user user group, as shown.

To create the KMIP user:
Create Local User page appears.
maprkmipclient1, and therefore this is
also the user name.
User Administration Permission and Change
Password Permission fields do not apply to KMIP groups, so leave these
unchecked.Enable KMIP option.Map non-existent Object Group to x-Object Group
option unchecked. mapr-my.cluster.com_user. mapr-my.cluster.com. KMIP Client Certificate field, paste the contents of the signed client certificate that you
copied to your clipboard.
maprkmipclient1
in this example), and returns to the Local Users listing.
Continue the setup on the data-fabric CLDB node using the configure.sh script with the HSM parameters, or the mrhsm Commands.