Instruction Manual

Security Key and RAID Management 121
8
Security Key and RAID
Management
Security Key Implementation
Dell PowerEdge RAID Controller (PERC) H700 and H800 cards support Self-
Encrypting Disks (SED) for protection of data against loss or theft of SEDs.
Protection is achieved by the use of encryption technology on the drives. The
encryption key is protected from unauthorized use by a security key.
There is one security key per controller. Under Local Key Management
(LKM) the key is managed by you (on-controller key management). The key
can be escrowed in to a file using Dell OpenManage. The security key is used
by the controller to lock and unlock access to encryption-capable physical
disks. In order to take advantage of this feature, you must:
1
Have SEDs in your system.
2
Create (LKM) a security key.
Configuring and Managing Secured Virtual Disks
The Dell OpenManage storage management application and the controller's
BIOS Configuration Utility (<Ctrl><R>) allow security keys to be created
and managed as well as the creation of secured virtual disks.
The following sections describe the menu options specific to security key
management and provide detailed instructions to perform the configuration
tasks. The contents of the following section apply to the BIOS Configuration
Utility. For more information on the management applications, see
"Configuring and Managing RAID" on page 81.
BIOS Configuration Utility Security Menu Options
The BIOS Configuration Utility is a storage management application that
resides in the controller BIOS. Its operation is independent of the operating
systems. It allows you to configure and maintain physical disk groups and
virtual disks as well as provides security key management.
PERC7.2_UG.book Page 121 Thursday, March 3, 2011 2:14 PM