Brocade Network Advisor SAN User Manual v11.1x (53-1002167-01, May 2011)

Brocade Network Advisor SAN User Manual 555
53-1002167-01
Disk device decommissioning
18
5. Click Yes to proceed with decommissioning.
If a re-key operation is currently in progress on a selected LUN, a message is displayed that
gives you a choice of doing a Forced Decommission, or to Cancel and try later after the re-key
operation is complete.
6. To check on the progress of the decommissioning operation, click Refresh. When
decommissioning is complete, the LUNs are removed from the Encryption Target LUNs table.
Displaying and deleting decommissioned key IDs
When disk LUNs are decommissioned, the process includes the disabling of the key record in the
key vault and indication that the key has been decommissioned. These decommissioned keys are
still stored on the switch. You can display, copy, and delete them as an additional security measure.
For RKM key vaults, you need to know the Universal ID (UUID) to delete keys from the key vault. To
display vendor-specific UUIDs of decommissioned key IDs for RKM key vaults, complete the
following steps:
1. Select Configure > Encryption from the menu task bar.
The Encryption Center dialog box displays (Figure 153).
2. Select a switch from the Encryption Center Devices table, then select Switch >
Decommissioned key IDs from the menu task bar, or right-click a switch and select
Decommissioned key IDs.
The Decommissioned Key IDs dialog box displays (Figure 260).
FIGURE 260 Decommissioned Key IDs dialog box
3. Click Delete All to delete the decommissioned keys from the switch. As a precaution, you might
want to copy the keys to a secure location before deleting them from the switch. To export the
keys, right-click and select Export, which will export the key IDs.
NOTE
For RKM key vaults, you need to know the Universal ID (UUID) associated with the
decommissioned LUN key IDs to delete keys from the key vault. You can display vendor-specific
UUIDs of decommissioned key IDs for RKM key vaults. Select the desired decommissioned key
IDs from the Network Advisor Decommissioned Key IDs table, then click Universal ID. The
Universal IDs dialog box displays (Figure 261).