Fabric OS Encryption Administrator's Guide v6.4.0 (53-1001864-01, June 2010)

Fabric OS Encryption Administrator’s Guide 225
53-1001864-01
enable commands
--enable -LUN
, 135
--enable -rekey
, 147
--enable_rekey
, 145
--enableEE
, 190
enableEE
, 116
encrypted LUN states
, 210
encryption
adding a license
, 5
adding a target
, 74
adding new LUNs
, 75
best practices for licensing
, 5
configuration planning for the management
application
, 22, 33
configure dialog box
, 14
configuring
LUNs for first-time encryption
, 145
configuring hosts to access encryption targets
, 75
configuring in a multi-path environment
, 54
definition of terms
, 2
description of blade
, 5
engines
, 4
first-time encryption modes
, 145
frame redirection diagram
, 8
gathering information before using the setup wizard
,
22, 33
host and LUN considerations
, 1
launching the encryption target properties dialog box
,
75
launching the encryption targets dialog box
, 73
moving a target to a different encryption engine
, 74
overview diagram
, 7
performance licensing for switch
, 5
physical view of switch
, 4
removing a target
, 74
selecting mode for LUNs
, 60
solution overview
, 7
viewing and editing group properties
, 81
encryption blades
port labeling
, 98
special configuration considerations
, 98
encryption engines
adding to HA clusters
, 87
effects of zeroizing
, 72
recovering from zeroizing
, 72
removing from HA clusters
, 87
security processor (SP) states
, 209
states during an active failover and failback
, 188
support for tape pools
, 88
verifying status using the CLI
, 116
zeroizing
, 72
encryption group
adding a switch using the management application
, 41
advanced configuration
, 181
allowed configuration changes
, 194
basic configuration
, 109
configuration impact of split or node isolation
, 194
confirming configuration status
, 39
creating using the CLI
, 109
creating using the encryption setup wizard
, 34
deleting using the CLI
, 183
disallowed configuration changes
, 194
group-wide policy configuration
, 115
merge and split use cases
, 189
removing a node using the CLI
, 181
selecting the key vault type
, 36
switch connection requirements
, 97
use cases
a member node lost connection to all other nodes
in the encryption group
, 192
encryption group properties
using the restore master key
, 72
viewing encryption group properties
, 81
encryption group properties dialog box
General tab
, 82
HA Clusters tab
, 47, 87
Link Keys tab
, 87
Members tab
, 83
Tape Pools tab
, 88
encryption properties
viewing properties
, 77
encryption switch
definition of
, 4
initialization
, 106
port labeling
, 98
encryption switch or group, removing using the
management application
, 83
encryption targets
adding to virtual targets and virtual initiators within the
encryption switch
, 49
configuring hosts for
, 56
using the dialog box
, 73
using the dialog box to add Disk LUNs
, 76
ensure uniform licensing in HA clusters
, 175
error recovery instructions
for adding a switch to a new group
, 201
for adding a switch to an existing group
, 200
error recovery instructions for adding a switch to an
existing group
, 200
errors related to the CLI
, 195
export commands
--exportmasterkey
, 111