Encrypted Volume and File System v2.2 Administrator Guide (777846-001, April 2014)
Index
A
AES (Advanced Encryption Standard), 183
configuring for a volume , 47
configuring the default algorithm for files, 32
configuring the default algorithm for volumes , 32
supported key lengths , 16
assigning a new owner to a volume, 68
authorized user keys , 40
capabilities, 40
displaying the authorized user keys IDs for a volume,
151
autostart
configuring, 34
B
backing up EVFS volumes, 78, 80, 94
nonmirrored volumes, 94
online
with LVM mirrors, 80
with VxVM mirrors, 87
backup data
restoring, 97
boot disk
restrictions, 46, 55
boot_local flag, 35
boot_local2 flag, 35
boot_remote flag, 32, 35
bpd (number of data blocks decrypted), 150
bpe (number of data blocks encrypted), 150
bpr (data blocks read), 150
bpw (data blocks written), 150
C
changing owner keys, 68
cluster key pair
creating, 171
definition, 171
installing on adoptive nodes, 173
collecting data, 157
commands
EVFS, 160
D
data blocks read (bpr), 150
data blocks written (bpw), 150
decryption
statistics, 150
decryption throughput (dkbps), 151
device special files
for EVFS, 47
digest (message digest) algorithm
displaying, 152
dirty bit, 155
resetting, 81, 83, 85, 87, 89, 91
disabling
access to EVFS volumes, 64
displaying
volume information, 149
dkbps (decryption throughput), 151
E
ekbps (encryption throughput), 151
EMD
allocating space for, 46
creating, 47
definition, 21
destroying, 72, 165
displaying information about, 66
displaying the size of the EMD for a volume, 151
recovering, 71
verifying, 152
enabling EVFS for a volume, 49, 165
encryption
statistics, 150
verifying, 53, 58
encryption algorithm
configuring default for EVFS files, 32
configuring default for EVFS volumes, 32
configuring for a volume, 47
displaying, 151
encryption metadata see EMD
encryption throughput (ekbps), 151
envelopes see key records
error messages
cannot retrieve private key, 154
cannot store public key, 153
EMD is dirty, 155
evol busy, 155
key loading failure, 153, 154
map error, 155
not found in /etc/evfs/evfstab file, 154
valid EMD already exists, 154
/etc/evfs/evfs.conf file, 30, 32
/etc/evfs/evfstab, 34
/etc/evfs/pkey directory, 30
/etc/fstab file, 52
/etc/rc.config.d/evfs, 34
evfs
pseudo-user account, 29
EVFS commands, 160, 165–167
EVFS volumes
reporting the names of, 150
reporting the number of, 150
reporting the states of, 150
evfsadm
map command, 46, 165
start command, 33, 165
stat command, 52, 57, 149, 166
stop command, 65, 165
evfspkey, 41
delete command, 69
185