Encrypted Volume and File System v2.2 Administrator Guide (777846-001, April 2014)

Table 7 Managing EVS volumes (continued)
CommandTask
evfsvol disable -p evfs_volume_pathDisable an EVS volume with a stored
passphrase and key ID in /etc/
evfs/evfstab.
evfsvol disable -aDisable all EVS volumes with key IDs
in /etc/evfs/evfstab.
evfsvol iencrypt [-f] [-k keyname] [-c cipher]
evfs_volume_path
Inline Encrypt data on an existing
volume
evfsvol raw [-k keyname] evfs_volume_pathOpen raw access for an EVS volume
.
CAUTION: HP recommends that
you use this operation only when
creating encrypted backup media or
restoring encrypted backup media,
as described in “Backing up EVS
volumes” (page 78).
evfsvol close [-k keyname] evfs_volume_pathClose raw access for an EVS volume.
Table 8 Managing EVFS keys and users/groups
CommandTask
evfsvol assign -u newowner [-r recovery_key.priv] [-k keyname]
evfs_volume_path
Change the owner of an EVFS
volume.
evfsvol assign -u newowner[-r recovkeyfile] [-k
keyname]evfs_volume_path
Recover from problems with
owner keys.
evfsvol delete [-u user] [-k keyname] evfs_volume_pathRemove keys from an EVFS
volume.
# evfspkey keygen [-r | [-p [-u user] | -s [-u user]] [-c cipher] [-k
keyname] [-m keywrap]
Create a user or recovery agent
key pair.
evfspkey passgen [-r recovkey_file |
-f [-u user] [-k keyname] |
Changes the passphrase for a
key
-p [-u user] [-k keyname] [-m keywrap] |
-s [-u user] [-k keyname] [-m keywrap]
# evfspkey delete [-u user | -r] [-p] [-k keyname]
Deletes a user or recovery agent
key pair.
Table 9 Troubleshooting EVFS
CommandTask
evfsadm stat -aShow all I/O and cryptography
statistics for each EVFS volume.
evfsadm stat -sShow the total number of data
blocks, read, written, decrypted,
and encrypted by EVFS.
evfsadm stat -zReset EVFS statistic values to
zero.
evfsvol display -a|evfs_volume_path]Display key IDs, underlying
volume, and operating
parameters for EVFS volumes.
166 EVFS quick reference