1
Log in to the CryptoHub under dual control using your administrator identities.
2
Navigate to the Services page.
3
Locate the Veeam service template and select [ Deploy ].
4
In the deployment wizard, configure the service settings for your environment.
5
Review the deployment summary and select [ Confirm ] to deploy the service.
1
Navigate to the Endpoints menu for the Veeam Backup & Replication service you deployed.
2
In the Manage Endpoints menu, select [ Add New ].
3
In the Add Endpoint dialog:
- Enter an identifier, or leave it empty for auto-generation.
- Leave the auto-populated CryptoHub Hostname as is.
- Set the Client Connection Type to RSA.
4
Select [ Add Endpoint ]. The browser prompts you to download a ZIP file that contains the following files:
The Veeam Backup & Replication integration requires the KMIP server TLS certificate to include CRL Distribution Points (CDP) and Subject Alternative Name (SAN) extensions. The next section details how to configure the KMIP server TLS certificate on the CryptoHub.This is noted here because you must deploy a new client endpoint after you configure the KMIP server TLS certificate. The new client endpoint contains the updated KMIP server TLS certificate. You can delete the endpoint ZIP file you downloaded in this step after you deploy the new client endpoint.Deploying the initial client endpoint in this step ensures that the auto-generated self-signed CA certificate exists, so the next section can use it to issue the KMIP server TLS certificate with the necessary extensions.

