Brocade Communications Systems Encryption Switch Service Manual Page 199

  • Download
  • Add to my manuals
  • Print
  • Page
    / 326
  • Table of contents
  • TROUBLESHOOTING
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews
Page view 198
Fabric OS Encryption Administrator’s Guide (DPM) 181
53-1002720-02
SRDF LUNs
3
vault, the key vaults must be synchronized to ensure the availability of the DEK at the remote site.
Both sites may share the same key vault, which eliminates the need for synchronization across
sites. Depending on distance between sites, sharing a key vault might add some latency when
retrieving a key.
FIGURE 92 Brocade Encryption Switches in an SRDF Configuration
NOTE
When Symmetrix arrays are managed in-band, the gatekeeper LUNs must be added to the
crypto-target containers as cleartext LUNs. Adding these as encrypted LUNs generates a CRITICAL
error on the console, and the other encrypted LUNs are not visible from the host.
Enabling remote replication mode
To enable the remote replication features, issue the cryptocfg --set -replication enable
command.The remote replication features are supported in Fabric OS 6.4 and later. Remote
replication is disallowed under the following conditions:
One of the nodes in an encryption group is currently running a Fabric OS version prior to v6.4.
A node is downgraded to Fabric OS version prior to v6.4.
When replication mode is enabled, starting first-time encryption (FTE) or manual rekey on LUNs
without metadata (due to uncompressible metadata blocks) generates a RASLOG entry, providing
the key ID that is used to encrypt the LUN. Key expiry rekey (or auto rekey) is disabled for LUNs
without metadata.
Replication mode can be disabled with the cryptocfg
--set -replication disable command. This
operation will fail if there are LUNs configured with the
-newLUN option in the encryption group.
Once replication mode is enabled, the switch firmware cannot be downgraded to firmware versions
prior to Fabric OS 6.4.0.
Page view 198
1 2 ... 194 195 196 197 198 199 200 201 202 203 204 ... 325 326

Comments to this Manuals

No comments