Example 1: Setting the environment of managing encryption key
09xx,YYYY/MM/DD,HH:MM:SS.xxx, 00:00,RMI AP,uid=user-name,Task Name,
[ENC],Edit ENC Settings,,Normal end,
from=xxxx:xxxx:xxxx:xxxx:xxxx:xxxx:xxxx:xxxx,,Seq.=xxxxxxxxxx
+{KMS, Generate ENC Keys on KMS, Protect the KEK at the KMS}
=[No Set, No, No],Num. of Settings=1
Detailed Information 1
|
Item |
Description |
|---|---|
|
KMS |
Indicates whether the key management server is used No Set: Not set Enable: The key management server is used Disable: The key management server is not used |
|
Generate ENC Keys on KMS |
Indicates where the encryption keys are created Yes: The keys are created on the key management server No: The keys are created on the storage system |
|
Protect the KEK at the KMS |
Indicates whether the key encryption keys created on the key management server are to be stored on the storage system Yes: The keys are stored on the storage system Yes (Disable Local Key Generation): The keys are stored but Local Key Generation is disabled No: The keys are not stored |
|
Num. of Settings |
The number of configured encryption environment settings |
Example 2: Setting the encryption key option
09xx,YYYY/MM/DD,HH:MM:SS.xxx, 00:00,RMI AP,uid=user-name,Task Name,
[ENC], Edit ENC Settings,,Normal end,
from=xxxx:xxxx:xxxx:xxxx:xxxx:xxxx:xxxx:xxxx,,Seq.=xxxxxxxxxx
+{Delete Internal Encryption Keys at PS OFF=true}
Detailed Information 2
|
Item |
Description |
|---|---|
|
Delete Internal Encryption Keys at PS OFF |
Indicates whether the encryption key is deleted when the storage system is powered off. True: Delete option is valid False: Delete option is invalid |