beautypg.com

Hp smartcache, Hp ilo, Hp enterprise secure key manager 3.1 – HP Secure Encryption User Manual

Page 10

background image

Overview 10

For the BL460c: P230i

For connection to JBODs: P431 or P731m

For more information about HP Smart Array Px3x controllers, see the appropriate Smart Array controller user

guide on the HP website (

http://www.hp.com/go/smartstorage/docs

).

HP SmartCache

HP SmartCache can be used in conjunction with HP Secure Encryption. HP SmartCache enables solid state
drives to be used as caching devices for hard drive media. Data can be accessed from the solid state drive

instead of hard drives. Data stored on the HP SmartCache drive utilizes the same encryption methods and

keys as the originating volume where the data is permanently stored, extending protection to the HP

SmartCache drives.
HP SmartCache provides the following features:

Accelerates application performance

Provides lower latency for transactions in applications

Supports all operating systems, without the need for changes

HP SmartCache requires an HP SmartCache license. For more information, or to obtain a license, see the

SmartCache website (

http://www.hp.com/go/smartcache

).

HP iLO

HP iLO Management is a set of embedded management features that support the complete life cycle of the
server, from initial deployment, to ongoing management, to service alerting and remote support.
The HP iLO subsystem is a standard component of HP ProLiant servers that simplifies initial server setup,

server health monitoring, power and thermal optimization, remote server administration, and key exchanges

between the HP ESKM 3.1 and the HP Smart Array Px3x controller. The HP iLO subsystem includes an
intelligent microprocessor, secure memory, and a dedicated network interface. This design makes HP iLO

independent of the host server and its operating system. This system provides client credentials, registration

to the key management database, key management, encryption activation, and audit support for the devices

within the platform.
For the full implementation of HP Secure Encryption with the HP ESKM 3.1, HP iLO Advanced or HP iLO Scale
Out editions are required to connect and auto-register with the HP ESKM 3.1. HP iLO provides key exchange

support between the HP Smart Array Px3x controller and the HP ESKM 3.1 to enable pre-boot support for OS

disk encryption. Audit support is provided for all for key management transactions.
For more information about HP iLO, see the HP website (

http://www.hp.com/go/ilo

).

HP Enterprise Secure Key Manager 3.1

HP Enterprise Secure Key Manager 3.1 acts as a secure, reliable repository for keys used by HP Secure

Encryption. In Remote Key Management Mode, HP iLO connects to the HP ESKM 3.1 using

username/password and digital certificate authentication to securely store and retrieve keys. Each HP iLO

must be registered as an HP ESKM 3.1 user by an administrator, or Crypto Officer, of the HP ESKM 3.1 for

access to be granted. If a user is registered and has the necessary permissions, the HP ESKM 3.1 accepts
requests and provides keys to the client. As standard practice, communication with the HP ESKM 3.1 is

configured for SSL to ensure the security of the connection and authorized access to keys.