HP Cisco MDS 9216i Cisco MDS 9000 Family Storage Media Encryption Configuratio - Page 129

Auto Key Replication of Keys Across Data Centers, Translating Media Keys

Page 129 highlights

Chapter 6 Cisco SME Key Management Key Management Operations Send documentation comments to [email protected] Step 3 Click Rekey. A confirmation dialog box is displayed asking if the rekey operation is to be performed. Click OK to rekey the selected volume groups. Auto Key Replication of Keys Across Data Centers The auto replication of media keys enables the moving of tapes from one data center to another. The replication of keys allows the same tape media to be accessed by more than one Cisco SME cluster. In most cases, the SME clusters are located in different locations, such as a primary data center and a disaster recovery site. Cisco SME allows you to automatically replicate the media keys from one Cisco SME cluster to one or more clusters. The automated process of replicating keys eliminates the need for the manual key export and import procedures. The media key auto-replication is configured on per tape volume group basis. One KMC manages all the data centers and the replicated keys are stored on the KMC. This section describes the following topics: • Translating Media Keys, page 6-15 • Auto Replicating Keys in Fabric Manager Web Client, page 6-16 Translating Media Keys Each cluster is associated with a translation context. The translation context contains the public key for the key pair generated by the crypto-module of one of the clusters. OL-18091-01, Cisco MDS NX-OS Release 4.x Cisco MDS 9000 Family Storage Media Encryption Configuration Guide 6-15

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280

Send documentation comments to [email protected]
6-15
Cisco MDS 9000 Family Storage Media Encryption Configuration Guide
OL-18091-01, Cisco MDS NX-OS Release 4.x
Chapter 6
Cisco SME Key Management
Key Management Operations
Step 3
Click
Rekey
. A confirmation dialog box is displayed asking if the rekey operation is to be performed.
Click
OK
to rekey the selected volume groups.
Auto Key Replication of Keys Across Data Centers
The auto replication of media keys enables the moving of tapes from one data center to another. The
replication of keys allows the same tape media to be accessed by more than one Cisco SME cluster. In
most cases, the SME clusters are located in different locations, such as a primary data center and a
disaster recovery site. Cisco SME allows you to automatically replicate the media keys from one Cisco
SME cluster to one or more clusters. The automated process of replicating keys eliminates the need for
the manual key export and import procedures. The media key auto-replication is configured on per tape
volume group basis.
One KMC manages all the data centers and the replicated keys are stored on the KMC.
This section describes the following topics:
Translating Media Keys, page 6-15
Auto Replicating Keys in Fabric Manager Web Client, page 6-16
Translating Media Keys
Each cluster is associated with a translation context. The translation context contains the public key for
the key pair generated by the crypto-module of one of the clusters.