HP B-series Fabric OS 7.1.1a Release Notes (5697-3023, November 2013 - includes all 7.1.1x versions)
D_Port
• Fabric OS 7.0.0a or later supports the execution of D_Port tests concurrently on up to eight
ports on the switch.
• Support of D_Port is extended to R_RDY flow control mode. The R_RDY mode is useful for
active DWDM links that do not work in VC_RDY or EXT_VC_RDY flow control modes.
• A new sub-option -dwdm is added to portcfgdport --enable CLI to configure D_Port
over active DWDM links. The -dwdm option will not execute the optical loopback test while
performing D_Port tests, because the active DWDM links do not provide the necessary support
to run optical loopback tests.
Encryption behavior for the HP StorageWorks Encryption SAN Switch and HP StorageWorks DC
Switch Encryption FC Blade
• For crypto tape operations, make sure you use Emulex FC HBA firmware/drivers
2.82A4/7.2.50.007 or higher. Use of a lower level firmware/driver may result in hosts not
being able to access their tape LUNs through a crypto target container.
• If the migration to Fabric OS 7.0.0a or later does not occur from 6.4.1a, 6.4.1b, or 6.4.2a
or later, the following message is displayed: HP StorageWorks Encryption SAN Switch
will reboot if auto reboot is enabled otherwise it needs to be
rebooted manually for recovery2010/11/08-04:54:35:485488, [FSS-1009],
4424/886, CHASSIS, ERROR, MACE, FSS Error: fcsw0-vs: MISMATCH:
component., svc.c, line: 2462, comp:FSSK_TH,
ltime:2010/11/08-04:54:35:485484.
• The addition of 3PAR Session/Enclosure LUNs to CTCs is now supported. Session/Enclosure
LUNs (LUN 0xFE) used by 3PAR InServ arrays must be added to CryptoTarget (CTC) containers
with LUN state set to cleartext, and encryption policy set to cleartext. HP StorageWorks
Encryption SAN Switch/HP StorageWorks DC Switch Encryption FC Blade do not perform
any explicit enforcement of this requirement.
• When host clusters are deployed in an Encryption environment, note the following
recommendations:
◦ If two EEs (encryption engines) are part of an HAC (High Availability Cluster), configure
the host/target pair such that they form a multipath from both EEs. Avoid connecting both
the host/target pairs to the same EE. This connectivity does not give full redundancy in
the case of EE failure resulting in HAC failover.
◦ Since quorum disk plays a vital role in keeping the cluster in sync, configure the quorum
disk to be outside of the encryption environment.
• The –key_lifespan option has no effect for cryptocfg –add –LUN. It has an effect only
for cryptocfg --create –tapepool for tape pools declared -encryption_format
native. For all other encryption cases, a new key is generated each time a medium is rewound
and block zero is written or overwritten. For the same reason, the Key Life field in the output
of cryptocfg --show -container -all –stat should always be ignored, and the
“Key life” field in cryptocfg --show –tapepool –cfg is significant only for
native-encrypted pools.
• The Quorum Authentication feature requires a compatible DCFM or HP Network Advisor
release that supports this feature: DCFM 10.4 or later for pre-Fabric OS 7.0.0a and Network
Advisor 11.1 or later for Fabric OS 7.0.0a or later.
NOTE: All nodes in the EG must be running Fabric OS 6.3.0 or later for quorum
authentication to be properly supported.
Important notes and recommendations 19