Failover/failback policy configuration – Brocade Fabric OS Encryption Administrator’s Guide Supporting HP Secure Key Manager (SKM) and HP Enterprise Secure Key Manager (ESKM) Environments (Supporting Fabric OS v7.2.0) User Manual
Page 177
Fabric OS Encryption Administrator’s Guide (SKM/ESKM)
157
53-1002923-01
High availability clusters
3
<
<
Sample output is shown below.
Before:
sw153168:admin> cryptocfg --show -hacluster -all
Encryption Group Name: disk_tape
Number of HA Clusters: 1
HA cluster name: dthac - 2 EE entries
Status: Committed
HAC State: Converged
WWN Slot Number Status
10:00:00:05:1e:39:a6:7e 4 Online
10:00:00:05:1e:c1:06:63 0 Online
sw153114:FID128:admin> cryptocfg --replace -haclustermember dthac
10:00:00:05:1e:39:a6:7e 4 10:00:00:05:1e:39:a6:7e 12
Slot Local/
EE Node WWN Number Remote
10:00:00:05:1e:39:a6:7e 12 Local
Operation succeeded.
After:
sw153114:FID128:admin> cryptocfg --show -hacluster -all
Encryption Group Name: disk_tape
Number of HA Clusters: 1
HA cluster name: dthac - 2 EE entries
Status: Defined
HAC State: Converged
WWN Slot Number Status
10:00:00:05:1e:39:a6:7e 12 Online
10:00:00:05:1e:c1:06:63 0 Online
sw153114:FID128:admin>
NOTE
The two engines being swapped must be in the same fabric.
Failover/failback policy configuration
Failover/failback policy parameters as outlined in
can be set for the entire encryption group
on the group leader.
Use the cryptocfg
--
set command with the appropriate parameter to set the values for the policy.
Policies are automatically propagated to all member nodes in the encryption group.