Brocade Communications Systems StoreFabric SN6500B Administrator's Manual page 252

Brocade fabric os encryption administrator's guide v7.1.0 (53-1002721-01, march 2013)
Hide thumbs Also See for StoreFabric SN6500B:
Table of Contents

Advertisement

6
Encryption group and HA cluster maintenance
4. Reclaim the WWN of the member node.
5. On the group leader, enter the cryptocfg
6. Deregister the member node to converge the encryption group.
7.
304
Role:
IP Address:
Certificate:
Current Master Key State:
Current Master KeyID:
b8:2a:a2:4f:c8:fd:12:e2:a9:25:d9:5b:58:2c:96:7e
Alternate Master Key State: Not configured
Alternate Master KeyID:
00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00
EE Slot:
SP state:
Current Master KeyID:
b8:2a:a2:4f:c8:fd:12:e2:a9:25:d9:5b:58:2c:96:7e
Alternate Master KeyID:
00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00
No HA cluster membership
a. If the node is in the DISCOVERED state and the security processor (SP) state is online (as
shown above), you can remove the node from the encryption group. Complete step 4 and
step 5, which completes the procedure.
b. If the node is not in the DISCOVERED state, and you want to remove the node from the
encryption group, you must first deregister the node. To do this, log in to the group leader
and enter the cryptocfg
SecurityAdmin:switch> cryptocfg --dereg -membernode 10:00:00:05:1e:41:99:bc
Operation succeeded.
a. Enter the cryptocfg
--
leader to reclaim the VI/VT WWN base for node to be removed.
When prompted, enter yes.
b. Enter the cryptocfg
--
all nodes in the encryption group:
node WWN.
SecurityAdmin:switch> cryptocfg --eject -membernode 10:00:00
:05:1e:55:3a:f0
WARNING: Before ejecting the membernode, ensure that the VI/VT WWN's
are reclaimed.
Refer to "cryptocfg --reclaimWWN" commands.
ARE YOU SURE
(yes, y, no, n): [no] Node eject granted by protocol clients
[10:00:00:05:1e:55:3a:f0]
Eject node status: Operation Succeeded.
SecurityAdmin:switch> cryptocfg --dereg -membernode 10:00:00:05:1e:55:3a:f0
Log in to the member node and execute the cryptocfg
MemberNode
10.32.33.145
10.32.33.145_my_cp_cert.pem
Saved
0
Online
dereg
membernode command followed by the node WWN.
--
-
reclaimWWN
membernode <node
-
commit command on the group leader to propagate the change to
eject
membernode command followed by the
--
-
Fabric OS Encryption Administrator's Guide (SKM/ESKM)
WWN> command on the group
-
reclaimWWN
cleanup command.
--
-
53-1002721-01

Advertisement

Table of Contents
loading

This manual is also suitable for:

Fabric os 7.1.0

Table of Contents