This section explains how to perform the following upgrade.

Upgrade from version

Upgrade to version

Cryptographic Security Platform 1.4.0 - PKI Hub 1.5.0

Cryptographic Security Platform 1.5.0 - PKI Hub 1.6.0

To upgrade to CSP 1.5.0 - PKI Hub 1.6.0

  1. Follow the steps in Downloading the installation files to download the following file: 

    Cryptographic Security Platform 1.5.0 - PKI Hub 1.6.0 for VMware vSphere, Hyper-V and Nutanix

     You need this ISO image file to upgrade any installation, ISO-based or non-ISO-based. ​

  2. Back up the installation state as explained in the "Backing up PKI Hub" section of the PKI Hub Guide for the version you are upgrading from.
  3. Repeat the following steps sequentially on each PKI Hub node; do not perform them simultaneously on multiple nodes. 
    1. Use an SFTP client to copy the PKI Hub ISO image file to the /home/sysadmin node folder. 
    2. Run the clusterctl upgrade command and wait for it to complete (around 2 hours) before proceeding to the next node.
  4. Reboot each node sequentially, allowing at least 15 minutes between reboots.
  5. If you deployed the Certificate Enrollment Gateway in the upgraded installation, follow the workaround for the CEG-3748 issue described in Known issues on Certificate Enrollment Gateway for Cryptographic Security Platform 1.5.0.
  6. Back up the installation state as explained in the Backing up PKI Hub section of this guide.