Brocade Fabric OS Encryption Administrator's Guide v6.3.0 (53-1001341-02, July 2009)

Encryption Administrator’s Guide 239
53-1001341-02
enable commands
--enable -LUN
, 115
--enable -rekey
, 126
--enable_rekey
, 129
--enableEE
, 172
enableEE
, 91
encrypted LUN states
, 190
encryption
adding a license
, 6
adding a target
, 35
adding new LUNs
, 36
best practices for licensing
, 6
configuration planning for the management
application
, 16
configure dialog box
, 18
configuring
LUNs for first-time encryption
, 129
configuring hosts to access encryption targets
, 36
configuring in a multi-path environment
, 59
definition of terms
, 3
description of blade
, 6
engines
, 5
first-time encryption modes
, 129
frame redirection diagram
, 9
gathering information before using the setup wizard
,
16
host and LUN considerations
, 1
launching the encryption target properties dialog box
,
36
launching the encryption targets dialog box
, 34
moving a target to a different encryption engine
, 36
overview diagram
, 8
performance licensing for switch
, 6
physical view of switch
, 5
removing a target
, 35
selecting mode for LUNs
, 66
solution overview
, 8
switch initialization
, 13
viewing and editing group properties
, 25
encryption blades
port labeling
, 88
special configuration considerations
, 88
encryption configuration tasks
, 2
encryption engines
adding to HA clusters
, 29
effects of zeroizing
, 77
recovering from zeroizing
, 77
removing from HA clusters
, 29
security processor (SP) states
, 189
states during an active failover and failback
, 170
support for tape pools
, 32
verifying status using the CLI
, 92
zeroizing
, 77
encryption group
adding a member node to using the CLI
, 96
adding a switch using the management application
, 47
advanced configuration
, 163
allowed configuration changes
, 176
basic configuration
, 95
configuration impact of split or node isolation
, 176
confirming configuration status
, 44
creating using the CLI
, 95
creating using the encryption setup wizard
, 37
deleting using the CLI
, 165
diagnosis DEGRADED status
, 93
disallowed configuration changes
, 176
group-wide policy configuration
, 98
merge and split use cases
, 171
removing a node using the CLI
, 163
selecting the key vault type
, 39
switch connection requirements
, 87
use cases
a member node lost connection to all other nodes
in the encryption group
, 174
encryption group properties
using the restore master key
, 77
viewing encryption group properties
, 25
encryption group properties dialog box
General tab
, 26
HA Clusters tab
, 29, 51
Link Keys tab
, 30, 31
Members tab
, 26
Tape Pools tab
, 32
encryption properties
viewing properties
, 22
encryption steps
adding CryptoTarget containers
, 2
adding encryption group members
, 2
configuring LUNs
, 2
configuring the encryption group leader
, 2
creating HA clusters
, 2
creating tape pools
, 2
initializing the switch
, 2
registering key vaults with the encryption group leader
,