Cisco MDS 9000 Family Storage Media Encryption Configuration Guide - Release 4.x (OL-18091-01, February 2009)

Send documentation comments to mdsfeedback-doc@cisco.com
6-15
Cisco MDS 9000 Family Storage Media Encryption Configuration Guide
OL-18091-01, Cisco MDS NX-OS Release 4.x
Chapter 6 Cisco SME Key Management
Key Management Operations
Step 3 Click Rekey. A confirmation dialog box is displayed asking if the rekey operation is to be performed.
Click OK to rekey the selected volume groups.
Auto Key Replication of Keys Across Data Centers
The auto replication of media keys enables the moving of tapes from one data center to another. The
replication of keys allows the same tape media to be accessed by more than one Cisco SME cluster. In
most cases, the SME clusters are located in different locations, such as a primary data center and a
disaster recovery site. Cisco SME allows you to automatically replicate the media keys from one Cisco
SME cluster to one or more clusters. The automated process of replicating keys eliminates the need for
the manual key export and import procedures. The media key auto-replication is configured on per tape
volume group basis.
One KMC manages all the data centers and the replicated keys are stored on the KMC.
This section describes the following topics:
Translating Media Keys, page 6-15
Auto Replicating Keys in Fabric Manager Web Client, page 6-16
Translating Media Keys
Each cluster is associated with a translation context. The translation context contains the public key for
the key pair generated by the crypto-module of one of the clusters.