Control-M encryption keys

The following table lists the Control-M encryption keys and their locations.

Key

Components

Key usage

Replace

ctm_key.txt

  • CCM
  • CM_PLUGIN
  • Control-M/Server
  • Control-M/Agent
  • CM

Encrypts the following:

  • run_as_user password
  • run_as in the Remote Host
  • CCM, CM_PLUGIN: <EM_HOME>\ini\fips
  • CTM Server:ctm_server\data
  • CTM Agent: ctm_agent\ctmdata\keys

transfer_key.txt

  • Control-M/EM clients
  • Control-M/EM Server

 

Encrypts local Control-M/EM files

<EM_HOME>\ini\fips

storage_key.txt

Control-M/EM Server

Encrypts passwords in the local Control-M/EM

<EM_HOME>\ini\fips

Local.key

Control-M/Agent

Encrypts local passwords in the Control-M/Agent

Run the ctmagcpk utility

new_local.txt

Control-M MFT

Encrypts passwords and passphrases in the following files:

  • accounts.xml
  • Pgp_templates.dat
  • aft_configurable.properties
  • ftpssl_config.properties
  • fts_config.properties

<Agent_Home>\CM\AFT\data

NOTE: If you want share files such as accounts.xml between two hosts with Control-M MFT, the same key must exist on each host.

Parent Topic

Control-M security