Dell PowerVault MD3220i Owner's Manual - Page 117

Changing a Security Key, Confirm pass phrase, phrase, Create Key, Create Security Key Complete

Page 117 highlights

The pass phrase that you enter is masked. NOTE: Create Key is active only if the pass phrase meets the above mentioned criterion. 5 In Confirm pass phrase, re-enter the exact string that you entered in Pass phrase. Make a record of the pass phrase that you entered and the security key identifier that is associated with the pass phrase. You need this information for later secure operations. 6 Click Create Key. 7 Make a record of the security key identifier and the file name from the Create Security Key Complete dialog, and click OK. After you have created a security key, you can create secure disk groups from security capable physical disks. Creating a secure disk group makes the physical disks in the disk group security-enabled. Security-enabled physical disks enter Security Locked status whenever power is re-applied. They can be unlocked only by a RAID controller module that supplies the correct key during physical disk initialization. Otherwise, the physical disks remain locked, and the data is inaccessible. The Security Locked status prevents any unauthorized person from accessing data on a security-enabled physical disk by physically removing the physical disk and installing the physical disk in another computer or storage array. Changing a Security Key When you change a security key, a new security key is generated by the system. The new key replaces the previous key. You cannot view or read the key. However, a copy of the security key must be kept on some other storage medium for backup in case of system failure or for transfer to another storage array. A pass phrase that you provide encrypts and decrypts the security key for storage on other media. When you change a security key, you also provide information to create a security key identifier. Changing the security key does not destroy any data. You can change the security key at any time. Before you change the security key, ensure that: • All virtual disks in the storage array are in Optimal status. • In storage arrays with two RAID controller modules, both are present and working normally. Configuration: Disk Groups and Virtual Disks 117

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268

Configuration: Disk Groups and Virtual Disks
117
The pass phrase that you enter is masked.
NOTE:
Create Key is active only if the pass phrase meets the above mentioned
criterion.
5
In
Confirm pass phrase
, re-enter the exact string that you entered in
Pass
phrase
.
Make a record of the pass phrase that you entered and the security key
identifier that is associated with the pass phrase. You need this
information for later secure operations.
6
Click
Create Key
.
7
Make a record of the security key identifier and the file name from the
Create Security Key Complete
dialog, and click
OK
.
After you have created a security key, you can create secure disk groups from
security capable physical disks. Creating a secure disk group makes the
physical disks in the disk group security-enabled. Security-enabled physical
disks enter Security Locked status whenever power is re-applied. They can be
unlocked only by a RAID controller module that supplies the correct key
during physical disk initialization. Otherwise, the physical disks remain
locked, and the data is inaccessible. The Security Locked status prevents any
unauthorized person from accessing data on a security-enabled physical disk
by physically removing the physical disk and installing the physical disk in
another computer or storage array.
Changing a Security Key
When you change a security key, a new security key is generated by the
system. The new key replaces the previous key. You cannot view or read the
key. However, a copy of the security key must be kept on some other storage
medium for backup in case of system failure or for transfer to another storage
array. A pass phrase that you provide encrypts and decrypts the security key
for storage on other media. When you change a security key, you also provide
information to create a security key identifier. Changing the security key does
not destroy any data. You can change the security key at any time.
Before you change the security key, ensure that:
All virtual disks in the storage array are in Optimal status.
In storage arrays with two RAID controller modules, both are present and
working normally.