beautypg.com

Brocade Fabric OS Encryption Administrator’s Guide Supporting RSA Data Protection Manager (DPM) Environments (Supporting Fabric OS v7.2.0) User Manual

Page 134

background image

114

Fabric OS Encryption Administrator’s Guide (DPM)

53-1002922-01

Viewing and editing encryption group properties

2

When the first encryption engine comes back online, the encryption group’s failback
setting determines whether the first encryption engine automatically resumes encrypting
and decrypting traffic to its encryption targets. In manual mode, the second encryption
engine continues handling the traffic until you manually invoke failback using the CLI, or
until the second encryption engine fails.

Key Vault Type: Options are:

-

RSA Data Protection Manager (DPM): NOTE: If an encryption group contains mixed
firmware nodes, the Encryption Group Properties Key Vault Type name is based on the
firmware version of the group leader. For example, If a switch is running Fabric OS
7.1.0 or later, the Key Vault Type is displayed as “RSA Data Protection Manager
(DPM).”If a switch is running a Fabric OS version prior to v7.1.0, Key Vault Type is
displayed as “RSA Key Manager (RKM)”.

REPL Support: Identifies if the remote replication LUN support is enabled or disabled. You
can change the current setting by clicking on the field and selecting the desired state.

Primary Key Vault IP Address: The IP address of the primary key vault, either IPv4 or host
name.

Primary Key Vault Connection Status: The status of the primary key vault link. In an
operating environment, the status should be Connected. Other options are:

-

Unknown/Busy

-

Not configured

-

Not responding

-

Failed authentication

Backup Key Vault IP Address: Optional. The IP address of the backup key vault. This field
can be left blank.

Backup Key Vault Connection Status: The status of the backup key vault link. Options are:

-

Connected

-

Unknown/Busy

-

Not configured

-

Not responding

-

Failed authentication

High Availability Mode: (KMIP key vault only.) Shown as Not Applicable.

User Authentication: (KMIP key vault only.) Shown as Not Applicable.

Certificate Type: (KMIP key vault only.) Shown as Not Applicable.

Vendor Name: (KMIP key vault only.) Shown as Not Applicable.

Primary Key Vault Certificate table: Displays the details of the primary vault certificate; for
example, version and signature information. The Load from File button allows you to locate
and load a primary key vault certificate from a different location.

Backup Key Vault Certificate table: Displays the details of the backup vault certificate; for
example, version and signature information. The Load from File button allows you to locate
and load a backup key vault certificate from a different location.