To manually install and register the Policy Agent:

  1. Log in to the Cryptographic Security Platform Vault for Databases webGUI using an account with Cloud Admin privileges.

  2. In the top menu bar, click Workloads.

  3. Select Actions > Download Policy Agent.

  4. Install the Policy Agent on your PostgreSQL Server VM. For details, see the installation and administration guide at https://api.managed.entrust.com/vault/latest

  5. Return to the Cryptographic Security Platform Vault for Databases webGUI and click Workloads in the top menu bar.

  6. Select Actions > Create New Cloud VM Set and complete the following:

    1. On the VM Set tab, enter a name for the Cloud VM Set.
    2. Select the group to which this set should belong.
    3. Optionally enter a description for the set.
    4. If you want to use the BoundaryControl feature, select the CloudControl app server link that you want to use.

    5. To specify additional options, see Creating a Cloud VM Set for the CSP Vault for VM Encryption for the descriptions.

    6. After you finish specifying the Cloud VM Set options, click Create.
    7. When you see the Cloud VM Set Successfully Created message, click Close.
  7. Register the PostgreSQL Server VM with Cryptographic Security Platform Vault by running the following command: 

    hcl register -a <Cryptographic Security Platform Vault IP Address>

    When prompted, enter the vault ID, username, and password for the Cryptographic Security Platform Vault.

    The PostgreSQL Server will display the available Cloud VM Sets. Select the Cloud VM Set that you want to use, and confirm your selection.