Only logical drives created using hard disk drives can use the Performance Read Cache. You cannot
enable Performance Read Cache on FlashCopy logical drives or Enhanced FlashCopy images.
SSDs do not currently support full disk encryption (FDE). Therefore, logical drives that have FDE enabled
cannot use the Performance Read Cache.
If all of the SSDs in the Performance Read Cache are T10PI-capable and the T10PI premium feature is
enabled, T10PI is automatically enabled for the Performance Read Cache and cannot be disabled. In
addition, you cannot add non-T10PI capable SSDs to a T10PI-enabled Performance Read Cache.
Minimum Firmware Level
7.84
Create Storage Subsystem Security Key
Syntax
This command creates a new security key for a storage subsystem that has Full Disk Encryption drives.
This command also sets the security definitions and sets the state to Security Enabled.
create storageSubsystem securityKey
[keyIdentifier=keyIdentifierString] |
passPhrase=passPhraseString |
file=fileName |
commitSecurityKey=(TRUE | FALSE)
Parameters
Parameter
Description
keyIdentifier
The character string that combines the storage subsystem ID and
a randomly generated string to produce the security key
identifier.
passPhrase
The character string that wraps the security key identifier with a
pass phrase that is 8 to 32 characters in length. You must use at
least one number, one lowercase letter, one uppercase letter, and
one non-alphanumeric character (a space is not permitted).
file
The name of the file to which you save the security key identifier.
Enclose the file name in double quotes (" ").
Note:
Add a file extension of
.slk
to the end of the file name.
commitSecurityKey
This parameter commits the security key identifier to the storage
subsystem for all FDE drives as well as the controllers. After the
security key identifier is committed, a key is required to read data
or write data. The data can only be read or changed by using a
key, and the drive can never be used in a non-secure mode
without rendering the data useless or totally erasing the drive.
Notes
Use this command for local key management only.
The controller firmware creates a lock that restricts access to the FDE drives. FDE drives have a state
called Security Capable. When you create a security key, the state is set to Security Enabled, which
restricts access to all FDE drives that exist within the storage subsystem.
3-104
IBM System Storage DS3000, DS4000, and DS5000: Command Line Interface and Script Commands Programming Guide
Summary of Contents for System Storage DS3000
Page 599: ...Appendix A Examples of information returned by the show commands A 3...
Page 601: ...Appendix A Examples of information returned by the show commands A 5...
Page 603: ...Appendix A Examples of information returned by the show commands A 7...
Page 605: ...Appendix A Examples of information returned by the show commands A 9...
Page 607: ...Appendix A Examples of information returned by the show commands A 11...
Page 609: ...Appendix A Examples of information returned by the show commands A 13...
Page 611: ...Appendix A Examples of information returned by the show commands A 15...
Page 623: ...Appendix A Examples of information returned by the show commands A 27...
Page 625: ...Appendix A Examples of information returned by the show commands A 29...
Page 627: ...Appendix A Examples of information returned by the show commands A 31...
Page 651: ......
Page 652: ...Part Number 00W1466 Printed in USA GA32 0961 05 1P P N 00W1466...