Brocade Fabric OS Encryption Administrator’s Guide Supporting NetApp Lifetime Key Manager (LKM) and KeySecure Storage Secure Key Manager (SSKM) Environments (Supporting Fabric OS v7.2.0) User Manual

Page 271

Advertising
background image

Fabric OS Encryption Administrator’s Guide (LKM/SSKM)

253

53-1002925-01

Brocade Encryption Switch removal and replacement

6

Admin:switch> cryptocfg -–show –localEE

27. From the new Brocade Encryption Switch, invoke the following command to set the default

zone as allAccess so the configuration from the existing Fabric is pushed to the new Brocade
Encryption Switch.

Admin:switch> defzone –allaccess

28. Invoke the following command on the new Brocade Encryption Switch.

Admin:switch> cfgsave

29. Replace the FC Cables to the new Brocade Encryption Switch.

30. Invoke the cfgsave command on any switch in that fabric. The fabric configuration from the

existing fabric will be merged into the new Brocade Encryption Switch.

31. Verify that defzone is set as no access.

32. If HA cluster membership for the old Brocade Encryption Switch was in place, move container

movement to the new Brocade Encryption Switch using the following procedure.

a. Replace the old EE with the new EE using the following command on the group leader.

Admin:switch> cryptocfg –-replace <WWN of Old BES> <WWN of new BES>

b. Issue commit.

Admin:switch> cryptocfg --commit

c. Replace the HA cluster membership from the old EE to the new EE using the following

command on the group leader.

Admin:switch> cryptocfg -–replace –haclustermember <HA cluster name> <WWN

of old Brocade Encryption Switch> <WWN of new Brocade Encryption Switch>

d. Issue commit.

Admin:switch> cryptocfg --commit

e. If “manual” failback was set on the HA cluster, user intervention will be required to

manually fail back the LUNs owned by the newly replaced Brocade Encryption Switch.

33. If HA cluster membership for the old Brocade Encryption Switch was not in place, move

container movement to the new Brocade Encryption Switch using the following procedure.

a. Replace the old EE with the new EE using following command on the group leader.

Admin:switch> cryptocfg –-replace <WWN of old Brocade Encryption Switch>

<WWN of new Brocade Encryption Switch>

b. Issue commit.

Admin:switch> cryptocfg --commit

34. Check the EG state using the following command to ensure that the entire EG is in the

converged and In Sync state.

Admin:switch> cryptocfg –-show –groupcfg

Advertising