Decommissioning Disk Luns; Displaying And Deleting Decommissioned Key Ids - Brocade Communications Systems StoreFabric SN6500B Administrator's Manual

Brocade fabric os encryption administrator's guide v7.1.0 (53-1002721-01, march 2013)
Hide thumbs Also See for StoreFabric SN6500B:
Table of Contents

Advertisement

2
Disk device decommissioning
Provided that the crypto configuration is not left uncommitted because of any crypto configuration
changes or a failed device decommission operation issued on a encryption group leader node, this
error message will not be seen for any device decommission operation issued serially on an
encryption group member node. If more than one device decommission operation is attempted in
an encryption group from member nodes simultaneously, this error message is transient and will
go away after device decommission operation is complete. If the device decommissioning
operation fails, retry the operation after some time has passed.

Decommissioning Disk LUNs

Use the following procedure to decommission a disk LUN.
1. Select Configure > Encryption from the menu task bar to display the Encryption Center
2. Select a group, switch, or engine from the Encryption Center Devices table that contains the
3. Select a Target storage device from the list, then click LUNs.
4. Select the LUNs associated with the device, then click Decommission.
5. Click Yes to proceed with the decommissioning process.
6. To check on the progress of the decommissioning operation, click Refresh. When

Displaying and deleting decommissioned key IDs

When disk LUNs are decommissioned, the process includes the disabling of the key record in the
key vault and indication that the key has been decommissioned. These decommissioned keys are
still stored on the switch. You can display, copy, and delete them as an additional security measure.
The Decommissioned Key IDs dialog box lists Key IDs that have been decommissioned at the key
vault. They should also be deleted from the switch for added security, and to create room for new
key IDs. Using this dialog box, you can delete key IDs that are decommissioned at the key vault, but
still stored on the switch.
100
dialog box (Refer to
Figure 1
storage device to be configured, then select Group/Switch/Engine > Targets from the menu
task bar.
NOTE
You can also select a group, switch, or engine from the Encryption Center Devices table, then
click the Targets icon.
The Encryption Targets dialog box displays
The Encryption Target Disk LUNs dialog box displays.
A warning message displays.
A LUN Decommission Status dialog box is displayed while the LUNs are being
decommissioned. Click OK to close the dialog box.
If a rekey operation is currently in progress on a selected LUN, a message is displayed that
gives you a choice of doing a Forced Decommission, or to Cancel and try later after the rekey
operation is complete.
decommissioning is complete, the LUNs are removed from the Encryption Target LUNs table.
on page 14).
(Figure
55).
Fabric OS Encryption Administrator's Guide (SKM/ESKM)
53-1002721-01

Advertisement

Table of Contents
loading

This manual is also suitable for:

Fabric os 7.1.0

Table of Contents