HP Secure Encryption manual Configuration

Page 16

2.Click Perform Initial Setup.

The following screen appears.

3.Complete the following:

o Under Create Crypto Officer Password, enter, and re-enter the password in the fields provided. o Under Encryption Mode, select either:

Enable and Allow Future Plaintext Volumes: Allowing future plaintext volumes still requires authentication by the Crypto Officer or the User before a plaintext volume can be created.

Enable and Disallow Future Plaintext Volumes: This option prevents the creation of new plaintext volumes on the controller. This setting can be changed later by the Crypto Officer. Selecting this option does not prevent the migration of a set of drives with existing plaintext volumes to the controller.

oEnter the Master Key name in the field provided. The Master Key name must be between 10 and 64 characters.

Configuration 16

Image 16
Contents HP Secure Encryption Installation and User Guide Page Contents Support and other resources Overview About HP Secure EncryptionEncryption features BenefitsFeature Description Eskm HP Smart Storage Administrator Solution componentsHP ProLiant servers HP Smart Array Controller HP SmartCacheHP iLO Minimum requirementsHP Enterprise Secure Key Manager 3.1 and later HP Eskm and key managementLicensing Encryption setup guidelines Recommended security settings at remote sites Encrypted backups PlanningDeployment scenarios Security domainsRemote and local key management requirements Local key management mode ConfigurationConfiguring the controller local mode Configuration Remote Key Management Mode Configuring Remote Key Management ModeLogging in to the HP Eskm Configuring the HP EskmAdding a user Configuration Adding a group Assigning a user to a group Configuration Configuration Creating a Master Key Placing a key in a group Running a key queryConfiguration Assigning a key to a group Configuring HP iLO Connecting HP iLO to HP Eskm Configuration Configuring the controller remote mode Configuration Accessing Encryption Manager OperationsOpening Encryption Manager Logging into Encryption ManagerManaging passwords Set or change the Crypto Officer passwordSet or change the password recovery question Set or change user account passwordSet or change the controller password Suspending the controller password Resuming the controller password Changing the Master Encryption Key Working with keysRekeying the Drive Encryption Keys Creating a plaintext volume Rescanning keysOperations Operations Converting plaintext volumes into encrypted volumes Changing key management modes Enabling/disabling plaintext volumes Enabling/disabling the firmware lock Enabling/disabling local key cache Importing drive sets in Local Key Management Mode Importing drives with different Master KeysOperations Maintenance ControllersDrives Flashing firmwareReplacing a physical drive Encryption ManagerLocating groups associated with a drive GroupsQuery by drive serial number Maintenance Query by previous server name Maintenance Displaying log information Running queries Maintenance Maintenance Maintenance Troubleshooting Common issuesLost or forgotten Crypto Officer password Lost or forgotten controller passwordLocal mode Remote modeLocating the key using the HP Eskm Lost or forgotten Master KeyLocating the key using iLO Forgotten which Master key goes with which drive Logical drives remain offline Master key not exportingTesting the connection between HP iLO and the HP Eskm Potential errors encountered Error Description Action Clearing the encryption configuration Before you contact HP Support and other resourcesHP contact information Appendix Encryption algorithmsGlossary ILO Local Master Encryption KeyMaster Encryption Key PlaintextVolume encryption key Remote Key ManagerDocumentation feedback Index EskmIndex