
Self-Encrypting Drive
Self-Encrypting Drive
The HPE MR Gen10 Plus Controller supports Self-Encrypting Drive (SED) that secures the drive data from unauthorized access or
modification of data. As the data on the drive is encrypted even if the SED drive is removed from its storage system, it cannot be
accessed without appropriate security authorization.
Passive Key Management
Passive Key Management
To use passive key management, enable the SED drive as JBOD and expose the drive to OS. This method allows you to manage SED
using third-party key management like SEDutil. SED monitoring is also available in MR Storage Administrator, Storage Command Line
Interface (StorCLI) tool, and configuration utility in UEFI System Utilities..
Local Key Management
Local Key Management
You can enable SED drive security for local key management using the MR Storage Administrator, StorCLI tool, and configuration utility
in UEFI System Utilities. You must provide a controller-wide security key identify and security key. While boot up, the security key
stored in the controller is used to unlock the drive. Whenever the drive is powered down, the security enabled drive data encryption key
is locked. This action protects the drives or systems against any theft.
Remote Key Management
Remote Key Management
Remote key management is also known as external key management.
NOTE:
NOTE:
You can enable SED drive security for remote key management using the configuration utility in UEFI System Utilities.
For more information, see Enabling Drive Security.
The configuration utility in UEFI System Utilities works with iLO key manager to create the security key identify and security key in the
remote key manager server. iLO key manager needs to be configured before enabling remote key management in the configuration
utility. Whenever the drive is powered down, the security enabled drive data encryption key is locked. While boot up, the security key is
retrieved from the remote key manager server to unlock the drive.
Self-Encrypting Drive
72
Содержание MR Gen10 Plus
Страница 1: ...HPE MR Gen10 Plus Controller User Guide Part Number 30 9E6EB4E3 002 Published April 2022 Edition 2 ...
Страница 10: ...Features Features 10 ...
Страница 19: ...RAID technologies RAID technologies 19 ...
Страница 26: ...Striping Striping 26 ...
Страница 28: ...Mirroring Mirroring 28 ...
Страница 32: ...Parity Parity 32 ...
Страница 45: ...Spare drives Spare drives 45 ...
Страница 50: ...Transformation Transformation 50 ...
Страница 51: ...Array transformations Array transformations 51 ...
Страница 54: ...Logical drive transformations Logical drive transformations 54 ...
Страница 58: ...Drive technology Drive technology 58 ...
Страница 66: ...Security Security 66 ...
Страница 68: ...Simple A Simple erase writes a pattern to the logical drive in a single pass Simple 68 ...
Страница 70: ...Thorough A thorough drive erase operation repeats the Normal drive erase operation three times Thorough 70 ...
Страница 73: ...Reliability Reliability 73 ...
Страница 76: ...Performance Performance 76 ...
Страница 80: ...Cache Cache 80 ...
Страница 97: ...Cable part numbers For more information on cables see the server QuickSpecs Cable part numbers 97 ...
Страница 98: ...Configuration Configuration 98 ...
Страница 106: ...Configuration management Configuration management 106 ...
Страница 117: ...Controller management Controller management 117 ...
Страница 119: ...Advanced controller management Advanced controller management 119 ...
Страница 137: ...Logical drive management Logical drive management 137 ...
Страница 143: ...Drive management Drive management 143 ...
Страница 155: ...Maintenance Maintenance 155 ...
Страница 156: ...System maintenance tools System maintenance tools 156 ...
Страница 160: ...Models Models 160 ...
Страница 172: ...Support and other resources Support and other resources 172 ...