
842
Brocade Network Advisor SAN User Manual
53-1003154-01
Master keys
20
Active master key
The active master key is used to encrypt newly created data encryption keys (DEKs) prior to sending
them to a key vault to be stored. You can restore the active master key under the following
conditions:
•
The active master key has been lost, which happens if all encryption engines in the group have
been zeroized or replaced with new hardware at the same time.
•
You want multiple encryption groups to share the same active master key. Groups should share
the same master key if the groups share the same key vault and if tapes (or disks) are going to
be exchanged regularly between the groups.
Alternate master key
The alternate master key is used to decrypt data encryption keys that were not encrypted with the
active master key. Restore the alternate master key for the following reasons:
•
To read an old tape that was created when the group used a different active master key.
•
To read a tape (or disk) from a different encryption group that uses a different active
master key.
Master key actions
NOTE
Master keys belong to the group and are managed from Group Properties.
Master key actions are as follows:
•
Backup master key: Enabled any time a master key exists. Selecting this option launches the
Backup Master Key for Encryption Group dialog box.
You can back up the master key to a file, to a key vault, or to a smart card. You can back up the
master key multiple times to any of these media in case you forget the passphrase you
originally used to back up the master key, or if multiple administrators each needs a
passphrase for recovery. Refer to the following procedures for more information:
-
“Saving the master key to a file”
on page 843
-
“Saving a master key to a key vault”
on page 844
-
“Saving a master key to a smart card set”
on page 845
You must back up the master key when the status is Created but not backed up.
•
Restore master key: Enabled when no master key exists or the previous master key has been
backed up. This option is also enabled when using a DPM key vault.
When this option is selected, the Restore Master Key for Encryption Group dialog box displays,
from which you can restore a master key from a file, key vault, or smart card set. Refer to the
following procedures for more information:
-
“Restoring a master key from a file”
on page 846
-
“Restoring a master key from a key vault”
on page 847
-
“Restoring a master key from a smart card set”
on page 848
Содержание Network Advisor 12.3.0
Страница 1: ...53 1003154 01 11 July 2014 Brocade Network Advisor SAN User Manual Supporting Network Advisor 12 3 0...
Страница 4: ...iv Brocade Network Advisor SAN User Manual 53 1003154 01...
Страница 86: ...34 Brocade Network Advisor SAN User Manual 53 1003154 01 Uninstalling a patch 2...
Страница 190: ...138 Brocade Network Advisor SAN User Manual 53 1003154 01 Fabric tracking 4...
Страница 216: ...164 Brocade Network Advisor SAN User Manual 53 1003154 01 User profiles 5...
Страница 462: ...410 Brocade Network Advisor SAN User Manual 53 1003154 01 Searching for an assigned event filter 9...
Страница 478: ...426 Brocade Network Advisor SAN User Manual 53 1003154 01 Microsoft System Center Operations Manager SCOM plug in 10...
Страница 612: ...560 Brocade Network Advisor SAN User Manual 53 1003154 01 Exporting Host port mapping 13...
Страница 620: ...568 Brocade Network Advisor SAN User Manual 53 1003154 01 Exporting storage port mapping 14...
Страница 720: ...668 Brocade Network Advisor SAN User Manual 53 1003154 01 Security configuration deployment 17...
Страница 744: ...692 Brocade Network Advisor SAN User Manual 53 1003154 01 Configuring Virtual Fabrics 19...
Страница 1036: ...984 Brocade Network Advisor SAN User Manual 53 1003154 01 Troubleshooting FCIP Ethernet connections 22...
Страница 1068: ...1016 Brocade Network Advisor SAN User Manual 53 1003154 01 Removing thresholds 24...
Страница 1098: ...1046 Brocade Network Advisor SAN User Manual 53 1003154 01 Swapping blades 25...
Страница 1104: ...1052 Brocade Network Advisor SAN User Manual 53 1003154 01 Searching the configuration snapshots 26...
Страница 1176: ...1124 Brocade Network Advisor SAN User Manual 53 1003154 01 SAN connection utilization 28...
Страница 1282: ...1230 Brocade Network Advisor SAN User Manual 53 1003154 01 Removing a frame monitor from a switch 30...
Страница 1306: ...1254 Brocade Network Advisor SAN User Manual 53 1003154 01 Viewing historical reports for a configuration policy manager 31...
Страница 1378: ...1326 Brocade Network Advisor SAN User Manual 53 1003154 01 Event logs 32...
Страница 1432: ...1380 Brocade Network Advisor SAN User Manual 53 1003154 01 MAPS integration with other features 33...
Страница 1448: ...1396 Brocade Network Advisor SAN User Manual 53 1003154 01 Upload failure data capture 34...
Страница 1490: ...1438 Brocade Network Advisor SAN User Manual 53 1003154 01 SAN shortcut menus A...
Страница 1494: ...1442 Brocade Network Advisor SAN User Manual 53 1003154 01 Call Home Event Tables B...
Страница 1524: ...1472 Brocade Network Advisor SAN User Manual 53 1003154 01 About Roles and Access Levels D...
Страница 1552: ...1500 Brocade Network Advisor SAN User Manual 53 1003154 01 Regular Expressions F...
Страница 1920: ...1868 Brocade Network Advisor SAN User Manual 53 1003154 01 Views H...