Brocade Fabric OS Encryption Administrator's Guide Supporting Fabric OS v6.2.0 (53-1001201-04, May 2009)

20 Encryption Administrator’s Guide
53-1001201-04
Viewing switch encryption properties
2
Smart Cards
Smart Cards are credit card-sized cards that contain a CPU and persistent memory. Smart cards
are used as security devices, since they can generate private and public key pairs internally. The
private key is never exposed.
You configure a recovery card (smart card) using the Master Key Backup and Master Key Restore
dialog boxes. The Smart Card Asset Tracking dialog box lists known smart cards and the details of
the smart cards.
Smart card readers provide plug-and-play interface to read and write to a smart card. The following
smart card readers are supported:
GemPlus GemPC USB
http://www.gemalto.com/readers/index.html
SCM MicrosystemsSCR331
http://www.scmmicro.com/security/view_product_en.php?PID=2
See the following procedures for instructions about how to configure a Smart Card:
“Saving a master key to a smart card set” on page 79
“Restoring a master key from a smart card set” on page 83
Viewing switch encryption properties
To view switch encryption properties, do the following.
1. Select Configure > Encryption from the menu bar.
The Configure Encryption dialog box displays the status of all encryption-related hardware and
functions at a glance. It is the single launching point for all encryption-related configuration.
2. Select a switch or encryption engine from the tree, and click Properties.
Viewing and editing group properties
The Encryption Group Properties dialog box, shown in Figure 7, has six tabs which are defined in
this section:
“General tab” on page 21
“Members tab” on page 22
“Security tab” on page 24
“HA Clusters tab” on page 25
“Engine Operations tab” on page 26
“Link Keys tab” on page 27
“Tape Pools tab” on page 27
NOTE
The Link Keys tab appears only if the key vault type is NetApp LKM.