Security Administration Tool (sec_admin) (Tools Menu)

Invokes the Security Administration tool, which provides a set of commands to manage the replicas contained in the registry. Each instance of a registry server maintains a working copy of the registry database in virtual memory and on disk. One server, called the master replica, accepts updates and handles the subsequent propagation of changes to all other replicas. All other replicas are read-only replicas, which accept only queries. Typically, each cell has one master replica and numerous read-only replicas.

Use the sec_admin command to perform the following tasks:

· View a list of replicas

· Delete a replica

· Reinitialize a replica

· Stop a replica

· Put the master replica into a maintenance state

· Generate a new master key used to encrypt principal keys

Note that sec_admin cannot add, delete, or modify information in the database, such as names and accounts. Use rgy_edit to modify registry database entries.

image\wmf_dcem0037.gif To use the Security Administration tool (sec_admin):

1. Pull down the Tools menu and choose Security Administration tool. A field is displayed, allowing you to enter parameters for the application. You do not need to enter anything in this field; just click OK.

The
sec_admin command displays the current default replica's full global name, the cell in which the replica exists, and the replica's state. Then it displays the sec_admin> prompt.

2. Enter any of the sec_admin subcommands.

3. To exit, type exit at the prompt. Or, double-click on the control box in the upper left corner of the window, and choose Close from the drop-down list.