beautypg.com

Dell POWEREDGE M1000E User Manual

Page 196

background image

164

Fabric OS Command Reference

53-1001764-02

cryptoCfg

2

Virtual devices redirect the traffic between host and target/LUN to encryption engines so they can
perform cryptographic operations. To enable frame redirection, you must create a target-initiator
zone prior to performing any CryptoTarget container configuration.

The CryptoTarget container (CTC) and associated Crypto LUN configuration is always configured
from the group leader node, and the configuration is subsequently propagated to all members in
the encryption group.

CTC configuration uses a transaction model. Configuration changes must be committed before they
take effect. Use the cryptocfg --commit command to commit the transaction. Refer to section

“5.

Transaction management”

for more information.

This command set supports the following tasks:

Configure and manage CryptoTarget containers (CTCs). Create, move, or delete a CTC, add or
remove initiators (hosts permitted to access the targets), or manually initiate a failback of an
encryption engine.

Configure and manage logical unit numbers (LUNs) for disk and tape storage devices: add a
LUN to a CTC, set or modify LUN encryption policy parameters, or remove a LUN from a CTC.
Perform LUN discovery.

Configure and manage tape pools: create a tape pool, set or modify tape pool encryption
policies, or delete a tape pool. Perform LUN discovery.

Manage rekey operations for primary and mirror LUNS.

In addition, this command set includes the following display commands. Output may vary
depending on your configuration. Refer to the Appendix of the Fabric OS Encryption Administrator’s
Guide
for a more comprehensive explanation of system states.

Use the --show -container -all -stat command for runtime status information on all CryptoTarget
containers in the encryption group. The display includes the following information:

Encryption group name: user-define label

Number of containers numeric value

For each container:

-

Container name: user-defined label

-

Type: disk or tape

-

EE node: The node WWN

-

EE slot: the slot number for the encryption engine

-

Target: The target port WWN

-

Target PID: The target PID

-

VT: The virtual target port WWN

-

VT PID: The virtual target PID

-

Number of hosts: numeric value

-

Number of tape sessions (or rekey sessions): numeric value

-

Host: The port WWN

-

Host PID: The host PID

-

VI: The virtual initiator port WWN

-

VI PID: The virtual initiator PID

-

Number of LUNs: numeric value