
Brocade Network Advisor SAN User Manual
695
53-1003154-01
Encryption user privileges
20
•
“Blade processor links”
on page 707 describes the steps for interconnecting encryption
switches or blades in an encryption group through a dedicated LAN. This must be done before
the encryption engines are enabled. Security parameters and certificates cannot be
exchanged if these links are not configured and active.
•
“Encryption node initialization and certificate generation”
on page 708 lists the security
parameters and certificates that are generated when an encryption node is initialized.
•
“Supported encryption key manager appliances”
on page 712 lists the supported key manager
appliances, and lists topics that provide additional detail.
Encryption user privileges
In the Management application, resource groups are assigned privileges, roles, and fabrics.
Privileges are not directly assigned to users; users get privileges because they belong to a role in a
resource group. A user can only belong to one resource group at a time.
The Management application provides three pre-configured roles:
•
Storage encryption configuration
•
Storage encryption key operations
•
Storage encryption security
Table 66
lists the associated roles and their read/write access to specific operations. The functions
are enabled from the Encryption Center dialog box:
TABLE 66
Encryption privileges
Privilege
Read/Write
Storage Encryption
Configuration
•
Launch the Encryption center dialog box.
•
View switch, group, or engine properties.
•
View the Encryption Group Properties Security tab.
•
View encryption targets, hosts, and LUNs.
•
View LUN centric view
•
View all rekey sessions
•
Add/remove paths and edit LUN configuration on LUN centric view
•
Rebalance encryption engines.
•
Clear tape LUN statistics
•
Create a new encryption group or add a switch to an existing encryption group.
•
Edit group engine properties (except for the Security tab)
•
Add targets.
•
Select encryption targets and LUNs to be encrypted or edit LUN encryption settings.
•
Edit encryption target hosts configuration.
•
Show tape LUN statistics.
Storage Encryption Key
Operations
•
Launch the Encryption center dialog box.
•
View switch, group, or engine properties,
•
View the Encryption Group Properties Security tab.
•
View encryption targets, hosts, and LUNs.
•
View LUN centric view.
•
View all rekey sessions.
•
Initiate manual rekeying of all disk LUNs.
•
Initiate refresh DEK.
•
Enable and disable an encryption engine.
•
Decommission LUNs.
•
Zeroize an encryption engine.
•
Restore a master key.
•
Edit key vault credentials.
•
Show tape LUN statistics.
Summary of Contents for Network Advisor 12.3.0
Page 4: ...iv Brocade Network Advisor SAN User Manual 53 1003154 01...
Page 86: ...34 Brocade Network Advisor SAN User Manual 53 1003154 01 Uninstalling a patch 2...
Page 190: ...138 Brocade Network Advisor SAN User Manual 53 1003154 01 Fabric tracking 4...
Page 216: ...164 Brocade Network Advisor SAN User Manual 53 1003154 01 User profiles 5...
Page 612: ...560 Brocade Network Advisor SAN User Manual 53 1003154 01 Exporting Host port mapping 13...
Page 620: ...568 Brocade Network Advisor SAN User Manual 53 1003154 01 Exporting storage port mapping 14...
Page 720: ...668 Brocade Network Advisor SAN User Manual 53 1003154 01 Security configuration deployment 17...
Page 744: ...692 Brocade Network Advisor SAN User Manual 53 1003154 01 Configuring Virtual Fabrics 19...
Page 1068: ...1016 Brocade Network Advisor SAN User Manual 53 1003154 01 Removing thresholds 24...
Page 1098: ...1046 Brocade Network Advisor SAN User Manual 53 1003154 01 Swapping blades 25...
Page 1176: ...1124 Brocade Network Advisor SAN User Manual 53 1003154 01 SAN connection utilization 28...
Page 1378: ...1326 Brocade Network Advisor SAN User Manual 53 1003154 01 Event logs 32...
Page 1448: ...1396 Brocade Network Advisor SAN User Manual 53 1003154 01 Upload failure data capture 34...
Page 1490: ...1438 Brocade Network Advisor SAN User Manual 53 1003154 01 SAN shortcut menus A...
Page 1494: ...1442 Brocade Network Advisor SAN User Manual 53 1003154 01 Call Home Event Tables B...
Page 1524: ...1472 Brocade Network Advisor SAN User Manual 53 1003154 01 About Roles and Access Levels D...
Page 1552: ...1500 Brocade Network Advisor SAN User Manual 53 1003154 01 Regular Expressions F...
Page 1920: ...1868 Brocade Network Advisor SAN User Manual 53 1003154 01 Views H...