•
If a LAN connection cannot be secured during SED authentication, authentication fails because the authen-
tication key that is managed by the key server cannot be obtained.
To use the key server linkage function, a continuous connection to the LAN must be secured.
•
To use the authentication key in a key server, a key group needs to be created. Multiple RAID groups can be
registered in a key group. Note that only one key group can be created in each ETERNUS DX. One authenti-
cation key can be specified for each key group. The authentication key for a key group can be changed.
•
Setting a period of time for the validity of the authentication key in the key server by using the ETERNUS DX
enables the key to be automatically updated by obtaining a new key from the key server before the validity
of the key expires. Access from the host (server) can be maintained even if the SED authentication key is
changed during operation.
•
When linking with the key management server, the ETERNUS DX obtains the SED authentication key from
the key server and performs authentication when key management settings are performed, key manage-
ment information is displayed, and any of the following operations are performed.
-
Turning on the ETERNUS DX
-
Expanding the RAID group capacity (Logical Device Expansion)
-
Forcibly enabling a RAID group
-
Creating the key group
-
Recovering SEDs
-
Performing maintenance of drive enclosures
-
Performing maintenance of drives
-
Applying disk firmware
-
Registering Dedicated Hot Spares
-
Rebuilding and performing copy back (when using Global Hot Spares)
-
Performing a redundant copy (when using Global Hot Spares)
-
Turning on the disk motor with the Eco-mode
2. Basic Functions
Data Encryption
71
FUJITSU Storage ETERNUS DX500 S4/DX600 S4, ETERNUS DX500 S3/DX600 S3 Hybrid Storage Systems Design Guide (Basic)
Copyright 2019 FUJITSU LIMITED
P3AM-7722-25ENZ0
Summary of Contents for ETERNUS DX500 S3/DX600 S3
Page 218: ......