Displaying universal ids, Rekeying all disk luns manually, Rekeying all disk luns manually 5 – Brocade Network Advisor SAN + IP User Manual v12.1.0 User Manual

Page 1069

Advertising
background image

Brocade Network Advisor SAN + IP User Manual

1015

53-1002949-01

Rekeying all disk LUNs manually

25

3. Click Delete All to delete the decommissioned keys from the switch. As a precaution, copy the

keys to a secure location before deleting them from the switch. Right-click on an entry in the
table to individually select a key ID. You may also copy or export a single row within the table or
the entire table. To export the keys, right-click and select Export, which will export the key IDs.

Displaying Universal IDs

In order to delete keys from the key vaults, you need to know the Universal ID (UUID) associated
with the decommissioned disk LUN key IDs. To display the Universal IDs, complete the following
procedure:

1. Select Configure > Encryption from the menu task bar to display the Encryption Center

dialog box. (Refer to

Figure 303

on page 852.)

2. Select a switch from the Encryption Center Devices table, then select Switch >

Decommissioned key IDs from the menu task bar.

The Decommissioned Key IDs dialog box displays. (Refer to

Figure 439

.)

3. Select the desired decommissioned key IDs from the Decommissioned Key IDs table, then

click Universal ID.

The Universal IDs dialog box displays the universal ID for each selected decommissioned key.
(Refer to

Figure 440

.)

FIGURE 440

Universal IDs dialog box

4. Click Close.

NOTE

You will need to export the decommissioned key ID to the key vault.

Rekeying all disk LUNs manually

The encryption management application allows you to perform a manual rekey operation on all
encrypted primary disk LUNs and all non-replicated disk LUNs hosted on the encryption node that
are in the read-write state.

Manual rekeying of all LUNs might take an extended period of time. The management application
allows manual rekey of no more than 10 LUNs concurrently. If the node has more than 10 LUNs,
additional LUN rekey operations will remain in the pending state until others have finished.

The following conditions must be satisfied for the manual rekey operation to run successfully:

The node on which you perform the manual rekey operation must be a member of an
encryption group, and that encryption group must have a key vault configured.

The node must be running Fabric OS 7.0.0 or later.

Advertising