The module is designed to run on the Policy Decision Point, and acts as an interface to manage and store critical information from the client, including storing the Golden PCRs and converting the AIK Certificate Signing Request (CSR) into a Signed Certificate and saving that Certificate for later use by the [Verify IMR] module. If the option to run [freeradius-server] and [Verify IMR] on a virtual machine running atop of a Windows server, then this routine will have to be modified to run under the windows server.
This module is delivered as a source RPM, which produces a single binary RPM. As the Key manager is designed to run as a background daemon, there are two files present in the binary RPM, the first is keyManager, which is the daemon program it self, the second is the startup initialization file that starts the Key manager daemon during system startup.
Wiki: Home
Wiki: Verify IMR
Wiki: freeradius-server
Wiki: here