Removing A Lun From A Cryptotarget Container - Brocade Communications Systems Brocade 8/12c Administrator's Manual

Supporting hp secure key manager (skm) environments and hp enterprise secure key manager (eskm) environments
Hide thumbs Also See for Brocade 8/12c:
Table of Contents

Advertisement

Removing a LUN from a CryptoTarget container

You can remove a LUN from a given CryptoTarget container if it is no longer needed. Stop all traffic
I/O from the initiators accessing the LUN before removing the LUN to avoid I/O failure between the
initiators and the LUN. If the LUN is exposed to more than one initiator under different LUN
Numbers, remove all exposed LUN Numbers.
1. Log in to the group leader as Admin or FabricAdmin.
2. Enter the cryptocfg
3. Commit the configuration with the -force option to completely remove the LUN and all
CAUTION
In case of multiple paths for a LUN, each path is exposed as a CryptoTarget container in the same
encryption switch or blade or on different encryption switches or blades within the encryption
group. In this scenario you must remove the LUNs from all exposed CryptoTarget containers
before you commit the transaction. Failure to do so may result in a potentially catastrophic
situation where one path ends up being exposed through the encryption switch and another path
Fabric OS Encryption Administrator's Guide
53-1002159-03
c.
Commit the configuration.
FabricAdmin:switch>cryptocfg --commit
Operation Succeeded
d. Display the LUN configuration.
FabricAdmin:switch>cryptocfg --show -LUN my_tape_tgt 0x0 \
10:00:00:00:c9:2b:c9:3a -cfg
EE node:
EE slot:
Target:
VT:
Number of host(s):
Configuration status: committed
Host:
VI:
LUN number:
LUN type:
LUN status:
Encryption mode:
Encryption format:
Tape type:
Key life:
Volume/Pool label:
Operation succeeded.
remove -LUN command followed by the CryptoTarget container name,
--
the LUN Number, and the initiator PWWN.
FabricAdmin:switch>cryptocfg --remove -LUN my_disk_tgt 0x0
10:00:00:00:c9:2b:c9:3a
Operation Succeeded
associated configuration data in the configuration database. The data remains on the removed
LUN in an encrypted state.
FabricAdmin:switch>cryptocfg --commit -force
Operation Succeeded
10:00:00:05:1e:41:9a:7e
0
20:0c:00:06:2b:0f:72:6d 20:00:00:06:2b:0f:72:6d
20:00:00:05:1e:41:4e:1d 20:01:00:05:1e:41:4e:1d
1
21:00:00:e0:8b:89:9c:d5 20:00:00:e0:8b:89:9c:d5
10:00:00:00:c9:2b:c9:3a 20:03:00:05:1e:41:4e:31
0x0
tape
0
encrypt
DF_compatible
tape
90 (day)
Crypto LUN configuration
3
159

Advertisement

Table of Contents
loading

This manual is also suitable for:

Fabric os encryption

Table of Contents