Displaying and deleting decommissioned key ids – Brocade Network Advisor SAN + IP User Manual v12.3.0 User Manual

Page 1208

Advertising
background image

1136

Brocade Network Advisor SAN + IP User Manual

53-1003155-01

Disk device decommissioning

25

A warning message displays.

5. Click Yes to proceed with the decommissioning process.

A LUN Decommission Status dialog box is displayed while the LUNs are being
decommissioned. Click OK to close the dialog box.

If a rekey operation is currently in progress on a selected LUN, a message is displayed that
gives you a choice of doing a Forced Decommission, or to Cancel and try later after the rekey
operation is complete.

6. To check on the progress of the decommissioning operation, click Refresh. When

decommissioning is complete, the LUNs are removed from the Encryption Target LUNs table.

Displaying and deleting decommissioned key IDs

With the introduction of Fabric OS 7.1.0, the ability to decommission disk LUNs is supported on all
key vault platforms. Earlier releases restricted this functionality to DPM (formerly RKM) and
LKM/SSKM key vaults only.

When disk LUNs are decommissioned, the process includes the disabling of the key record in the
key vault and indication that the key has been decommissioned. These decommissioned keys are
still stored on the switch. You can display, copy, and delete them as an additional security measure.

The Decommissioned Key IDs dialog box lists Key IDs that have been decommissioned at the key
vault. They should also be deleted from the switch for added security, and to create room for new
key IDs. Using this dialog box, you can delete key IDs that are decommissioned at the key vault, but
still stored on the switch.

In order to delete keys from the key vault, you need to know the Universal ID (UUID). To display
vendor-specific UUIDs of decommissioned key IDs, complete the following procedure:

1. Select Configure > Encryption from the menu task bar to display the Encryption Center

dialog box. (Refer to

Figure 376

on page 976.)

2. Select a switch from the Encryption Center Devices table, then select Switch >

Decommissioned key IDs from the menu task bar.

The Decommissioned Key IDs dialog box displays. (Refer to

Figure 512

.)

FIGURE 512

Decommissioned Key IDs dialog box

The dialog box contains the following information:

Advertising