Decommissioning Replicated Luns; Decommissioning Primary Luns Only; Decommissioning Secondary Luns Only - Brocade Communications Systems StoreFabric SN6500B Administrator's Manual

Brocade fabric os encryption administrator's guide v7.1.0 (53-1002721-01, march 2013)
Hide thumbs Also See for StoreFabric SN6500B:
Table of Contents

Advertisement

3

Decommissioning replicated LUNs

Use the following procedure to decommission a LUN.
1. Log in as Admin or FabricAdmin to the node that hosts the container.
2. Enter the cryptocfg
3. Enter cryptocfg
4. Enter the cryptocfg
5. Manually delete the listed key IDs from the key vault.
6. Enter the cryptocfg
7.
NOTE
When a decommissioned LUN is reused and the decommissioned key IDs are listed using the
cryptocfg
since the first time the LUN was used is displayed.

Decommissioning replicated LUNs

The following scenarios are provided:

Decommissioning primary LUNs only

To decommission the primary LUN and make the secondary LUN the primary LUN, complete the
following steps. Failure to do so could result in the LUN state showing as Disabled.
184
decommission command.
--
FabricAdmin:switch> cryptocfg --decommission -container disk_ct0 -initiator
21:01:00:1b:32:29:5d:1c -LUN 0
show
--
-
decommissioned key IDs to be deleted after decommissioning key IDs manually from the key
vault.
FabricAdmin:switch> cryptocfg -show -decommissionedkeyids
show
--
vendor-specific key information for a given key ID.
FabricAdmin:switch> cryptocfg --show -vendorspecific_keyid
AA:8B:91:B0:35:6F:DA:92:8A:72:B3:97:92:1B:CA:B4
uuid = b7e07a6a-db64-40c2-883a-0bc6c4e923e6
delete
--
associated with a decommissioned LUN.
FabricAdmin:switch> cryptocfg --delete -decommissionedkeyids
Enter the cryptocfg
show
--
key IDs are no longer listed.
The cache is also cleared when cryptocfg
show
decommissionedkeyids command, the entire list of decommissioned key IDs
--
-
"Decommissioning primary LUNs only"

"Decommissioning secondary LUNs only"

"Decommissioning primary and secondary LUN pairs"
decommissionedkeyids to obtain a list of all currently
vendorspecific_keyid <key_id> command to list the
-
decommissionedkeyids command to purge all key IDs
-
decommissionedkeyids command to verify that the deleted
-
zeroizeEE is executed on the encryption engine.
--
Fabric OS Encryption Administrator's Guide (SKM/ESKM)
53-1002721-01

Advertisement

Table of Contents
loading

This manual is also suitable for:

Fabric os 7.1.0

Table of Contents