Ha clusters tab – Brocade Network Advisor SAN User Manual v12.3.0 User Manual

Page 929

Advertising
background image

Brocade Network Advisor SAN User Manual

877

53-1003154-01

Viewing and editing encryption group properties

20

Registered Authentication Cards table: Lists the registered authentication cards.

-

Group Card #: The number of cards that are registered.

-

Card ID: The card serial number.

-

First Name and Last Name: The first and last name of the person assigned to the card.
The names are identified when the authentication card is first registered.

-

Notes: An optional entry of information.

Register from Card Reader button: Launches the Add Authentication Card dialog box.

Register from Archive button: Launches the Add Authentication Card dialog box.

Deregister button: Deregisters authentication cards, thus enabling them to be removed from
the switch and the database.

Encryption is not allowed until the master key has been backed up. Master keys are needed for all
key vaults except LKM/SSKM.

NOTE

You must enable encryption engines before you back up or restore master keys.

NOTE

If all encryption engines are otherwise operating normally but are missing the master key, the
following message displays below the Master Key status:

“None of the encryption engines in this encryption group have a copy of the master

key. The master key should be restored from a backup.”

This situation can occur if all encryption engines in a group are zeroized and then re-enabled.

HA Clusters tab

The HA Clusters tab allows you to create and delete HA clusters, add encryption engines to and
remove encryption engines from HA clusters, and failback an engine. Changes are not applied to
the encryption group until you click OK.

Each HA cluster must have exactly two encryption engines. The two encryption engines in the
cluster must be in the same fabric (they will always be in the same encryption group since only the
engines in the group are listed for selection).

HA clusters are groups of encryption engines that provide high availability features. If one of the
engines in the group fails or becomes unreachable, the other cluster member takes over the
encryption and decryption tasks of the failed encryption engine. An HA cluster consists of exactly
two encryption engines. Refer to

“Creating HA clusters”

on page 809.

The HA Clusters tab is viewed from the Encryption Group Properties dialog box. (Refer to

Figure 415

.) To access the HA Clusters tab, select a group from the Encryption Center Devices

table, then select Group > HA Clusters from the menu task bar. The Properties dialog box displays
with the HA Clusters tab selected.

NOTE

You can also select a group from the Encryption Center Devices table, then click the Properties icon.

The tab displays the includes the following information:

Advertising