Brocade Network Advisor SAN User Manual
525
53-1002696-01
Chapter
20
SAN Encryption Configuration
In this chapter
•
Encryption Center features . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 526
•
Encryption user privileges. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 527
•
Smart card usage . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 528
•
Network connections. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 539
•
Blade processor links . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 539
•
Encryption node initialization and certificate generation. . . . . . . . . . . . . . 540
•
Key Management Interoperability Protocol . . . . . . . . . . . . . . . . . . . . . . . . . 541
•
Supported encryption key manager appliances . . . . . . . . . . . . . . . . . . . . . 542
•
Steps for connecting to a DPM appliance . . . . . . . . . . . . . . . . . . . . . . . . . . 544
•
Steps for connecting to an LKM/SSKM appliance . . . . . . . . . . . . . . . . . . . 549
•
Steps for connecting to an ESKM/SKM appliance . . . . . . . . . . . . . . . . . . . 554
•
Steps for connecting to a TEKA appliance. . . . . . . . . . . . . . . . . . . . . . . . . . 565
•
Steps for connecting to a TKLM appliance . . . . . . . . . . . . . . . . . . . . . . . . . 570
•
Steps for connecting to a KMIP appliance (SafeNet KeySecure) . . . . . . . . 574
•
Encryption preparation . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 591
•
Creating a new encryption group . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 592
•
Adding a switch to an encryption group. . . . . . . . . . . . . . . . . . . . . . . . . . . . 630
•
Replacing an encryption engine in an encryption group . . . . . . . . . . . . . . 636
•
High availability (HA) clusters . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 637
•
Configuring encryption storage targets . . . . . . . . . . . . . . . . . . . . . . . . . . . . 640
•
Configuring hosts for encryption targets . . . . . . . . . . . . . . . . . . . . . . . . . . . 648
•
Adding target disk LUNs for encryption . . . . . . . . . . . . . . . . . . . . . . . . . . . . 650
•
Adding target tape LUNs for encryption . . . . . . . . . . . . . . . . . . . . . . . . . . . . 658
•
Moving Targets. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 661
•
Configuring encrypted tape storage in a multi-path environment . . . . . . . 661
•
Tape LUN write early and read ahead . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 662
•
Tape LUN statistics . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 664
•
Encryption engine rebalancing . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 668
•
Master keys . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 669
•
Security Settings . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 679
•
Zeroizing an encryption engine . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 679
•
Using the Encryption Targets dialog box . . . . . . . . . . . . . . . . . . . . . . . . . . . 681
Summary of Contents for Network Advisor 12.0.0
Page 36: ...xxxvi Brocade Network Advisor SAN User Manual 53 1002696 01...
Page 82: ...34 Brocade Network Advisor SAN User Manual 53 1002696 01 License downgrade 2...
Page 86: ...38 Brocade Network Advisor SAN User Manual 53 1002696 01 Uninstalling a patch 3...
Page 122: ...74 Brocade Network Advisor SAN User Manual 53 1002696 01 VM Manager discovery 4...
Page 184: ...136 Brocade Network Advisor SAN User Manual 53 1002696 01 Fabric tracking 5...
Page 214: ...166 Brocade Network Advisor SAN User Manual 53 1002696 01 User profiles 6...
Page 284: ...236 Brocade Network Advisor SAN User Manual 53 1002696 01 User defined performance monitors 8...
Page 320: ...272 Brocade Network Advisor SAN User Manual 53 1002696 01 Grouping on the topology 9...
Page 434: ...386 Brocade Network Advisor SAN User Manual 53 1002696 01 Port Auto Disable 12...
Page 442: ...394 Brocade Network Advisor SAN User Manual 53 1002696 01 Exporting Host port mapping 13...
Page 450: ...402 Brocade Network Advisor SAN User Manual 53 1002696 01 Exporting storage port mapping 14...
Page 536: ...488 Brocade Network Advisor SAN User Manual 53 1002696 01 Virtual FCoE port configuration 16...
Page 552: ...504 Brocade Network Advisor SAN User Manual 53 1002696 01 Security configuration deployment 17...
Page 878: ...830 Brocade Network Advisor SAN User Manual 53 1002696 01 Removing thresholds 24...
Page 922: ...874 Brocade Network Advisor SAN User Manual 53 1002696 01 VLAN routing 26...
Page 990: ...942 Brocade Network Advisor SAN User Manual 53 1002696 01 SAN Connection utilization 29...
Page 1138: ...1090 Brocade Network Advisor SAN User Manual 53 1002696 01 Call Home Event Tables B...
Page 1144: ...1096 Brocade Network Advisor SAN User Manual 53 1002696 01 IP Performance monitoring events C...
Page 1186: ...1138 Brocade Network Advisor SAN User Manual 53 1002696 01 Regular Expressions F...
Page 1486: ...1438 Brocade Network Advisor SAN User Manual 53 1002696 01 Views H...