
Chapter 3
Administering the Sun Crypto Accelerator 6000 Board
81
▼
Perform a Software Zeroize on the Board
There are two methods of clearing a board of all its key material. The first method is
with a hardware jumper (shunt). This form of zeroizing returns the board to its
original factory state (Failsafe mode). (See
“Zeroizing the Sun Crypto Accelerator
6000 Hardware to the Factory State” on page 223
.) The second method is to use the
zeroize
command.
Note –
The
zeroize
command removes the key material, and leaves any updated
firmware intact. This command also logs the security officer out upon successful
completion.
1. Start the
scamgr
utility.
2. Type
zeroize
.
3. Confirm the command.
For example:
▼
Use the
scamgr diagnostics
Command
Diagnostics can be performed from the
scamgr
utility and from the SunVTS
software. The
diagnostics
command in
scamgr
covers three major categories in
the Sun Crypto Accelerator 6000 hardware: general hardware, cryptographic
subsystem, and network subsystem. Tests for general hardware cover DRAM, flash
memory, the PCI bus, the DMA controller, and other hardware internals. Tests for
the cryptographic subsystem cover random number generators and cryptographic
accelerators. Tests on the network subsystem cover the
sca
device.
1. Start the
scamgr
utility.
scamgr{mca
N
@
hostname
,
sec-officer
}>
zeroize
WARNING: Issuing this command will zeroize all keys
on the board. Once zeroized, these keys
cannot be recovered unless you have
previously backed up your master key.
Proceed with zeroize? (Y/Yes/N/No) [No]:
y
All keys zeroized successfully.
Summary of Contents for Crypto Accelerator 6000 Board
Page 1: ...Sun Crypto Accelerator 6000 Board Version 1 1 User s Guide Part No E39851 01 February 2013...
Page 16: ...xvi Sun Crypto Accelerator 6000 Board User s Guide for Version 1 1 February 2013...
Page 18: ...xviii Sun Crypto Accelerator 6000 Board User s Guide for Version 1 1 February 2013...
Page 21: ...Preface xxi...
Page 22: ...xxii Sun Crypto Accelerator 6000 Board User s Guide for Version 1 1 February 2013...
Page 54: ...32 Sun Crypto Accelerator 6000 Board User s Guide for Version 1 1 February 2013...
Page 118: ...96 Sun Crypto Accelerator 6000 Board User s Guide for Version 1 1 February 2013...
Page 210: ...188 Sun Crypto Accelerator 6000 Board User s Guide for Version 1 1 February 2013...
Page 228: ...206 Sun Crypto Accelerator 6000 Board User s Guide for Version 1 1 February 2013...
Page 242: ...220 Sun Crypto Accelerator 6000 Board User s Guide for Version 1 1 February 2013...
Page 256: ...234 Sun Crypto Accelerator 6000 Board User s Guide for Version 1 1 February 2013...
Page 260: ...238 Sun Crypto Accelerator 6000 Board User s Guide for Version 1 1 February 2013...
Page 266: ...244 Sun Crypto Accelerator 6000 Board User s Guide for Version 1 1 February 2013...