Decommissioning disk luns, Displaying and deleting decommissioned key ids – Brocade Network Advisor SAN User Manual v12.3.0 User Manual

Page 906

Advertising
background image

854

Brocade Network Advisor SAN User Manual

53-1003154-01

Disk device decommissioning

20

Decommissioning disk LUNs

Use the following procedure to decommission a disk LUN.

1. Select Configure > Encryption from the menu task bar to display the Encryption Center

dialog box. (Refer to

Figure 266

on page 694.)

2. Select a group, switch, or engine from the Encryption Center Devices table that contains the

storage device to be configured, then select Group/Switch/Engine > Targets from the menu
task bar.

NOTE

You can also select a group, switch, or engine from the Encryption Center Devices table, then
click the Targets icon.

The Encryption Targets dialog box displays. (Refer to

Figure 389

on page 836.)

3. Select a Target storage device from the list, then click LUNs.

The Encryption Target Disk LUNs dialog box displays.

4. Select the LUNs associated with the device, then click Decommission.

A warning message displays.

5. Click Yes to proceed with the decommissioning process.

A LUN Decommission Status dialog box is displayed while the LUNs are being
decommissioned. Click OK to close the dialog box.

If a rekey operation is currently in progress on a selected LUN, a message is displayed that
gives you a choice of doing a Forced Decommission, or to Cancel and try later after the rekey
operation is complete.

6. To check on the progress of the decommissioning operation, click Refresh. When

decommissioning is complete, the LUNs are removed from the Encryption Target LUNs table.

Displaying and deleting decommissioned key IDs

With the introduction of Fabric OS 7.1.0, the ability to decommission disk LUNs is supported on all
key vault platforms. Earlier releases restricted this functionality to DPM (formerly RKM) and
LKM/SSKM key vaults only.

When disk LUNs are decommissioned, the process includes the disabling of the key record in the
key vault and indication that the key has been decommissioned. These decommissioned keys are
still stored on the switch. You can display, copy, and delete them as an additional security measure.

The Decommissioned Key IDs dialog box lists Key IDs that have been decommissioned at the key
vault. They should also be deleted from the switch for added security, and to create room for new
key IDs. Using this dialog box, you can delete key IDs that are decommissioned at the key vault, but
still stored on the switch.

Advertising