1.
Boot to system BIOS setup utility and select the controller to enter the HII configuration utility.
2.
From the main menu, select
Configure Controller Settings
>
Self-Encryption Drive (SED) Based
Encryption Setup
.
3.
Select
Key Management Mode
as
Local
, then select
Set/Change Managed SED Settings.
4.
Select
Configure Managed SED
.
5.
Enter new
Master Key Identifier
and new
Master Key
into fields.
6.
Select
Submit Changes.
7.
Enter old Master Key to authenticate the operation.
8.
Select
Submit Changes.
7.3.3.3
Changing Controller Password
Use the following steps to change the controller password:
1.
A valid controller password must be 8 to 32 characters long with ASCII characters. Boot to system BIOS setup
utility and select controller to enter HII configuration utility.
2.
From the main menu, select
Configure Controller Settings
>
Self-Encryption Drive (SED) Based
Encryption Setup
.
3.
Select
Key Management Mode
as
Local
, then select
Set/Change Managed SED Settings
.
4.
Select
Configure Managed SED
.
5.
Enter input for
Set/Change Controller Password
and select
Enabled
for
Controller Password
field.
6.
Select
Submit Changes.
7.
Enter current Master Key to authenticate the operation.
8.
Select
Submit Changes
.
7.3.3.4
Unlocking Controller
When Controller Password is set, data on the encrypted devices will be offline during system boot. The controller
password must be entered to unlock the controller and bring the encrypted devices online. After three wrong
attempts, a system reboot will be required to attempt to unlock the controller again.
1.
Boot to system BIOS setup utility and select the controller to enter theHII configuration utility.
2.
From the main menu, select
Configure Controller Settings
>
Self-Encryption Drive (SED) Based
Encryption Setup
.
3.
Select
Unlock Controller
.
4.
Enter controller password, then select
Submit
.
Note:
It is recommended to supply the password, before performing any operations such as removing or adding the
drives. Without the password, the controller will not be able to unlock the drive to perform the RAID operations such
as rebuild, background parity initialization, and surface scan operations.
7.3.4
HBA Physical Drive Operations
This section details physical drive operations for HBAs.
7.3.4.1
Taking Ownership of SED
Use the following steps to take ownership of the SED:
1.
Boot to system BIOS setup utility and select controller to enter HII configuration utility.
2.
From the main menu, select
Configure Controller Settings
>
Self-Encryption Drive (SED) Based
Encryption Setup
.
3.
Select
Take SED Ownership
.
4.
Select devices that you want the controller to manage their SED encryption settings.
5.
Select
Submit Changes
.
7.3.4.2
Revert
Revert destroys all user data, returns the SED to OFS and deletes any controller related data present in the drives.
The adapter has two versions of the Revert operation available: Microchip Revert and Revert with PSID.
7.3.4.3
Adaptec Revert
Adaptec Revert is performed on secure unconfigured SED owned by the Adaptec controller.
Managing SED
©
2022 Microchip Technology Inc.
and its subsidiaries
User Guide
DS00004281C-page 43