I Database tables and fields

TABLE 106 ENCRYPTION_GROUP (Continued)

Field

Definition

Format

Size

 

 

 

 

DEPLOYMENT_MODE

Indicates Transparent (0) or NonTransparent (1)

smallint

 

 

deployment mode. Only Transparent mode is

 

 

 

currently supported. All switches in the Encryption

 

 

 

Group share the same deployment mode.

 

 

 

Transparent mode uses re-direction zones to preserve

 

 

 

existing zoning of physical hosts and targets.

 

 

 

Non-transparent mode requires zoning changes

 

 

 

to zone physical hosts with Virtual Targets and to zone

 

 

 

Virtual Initiators with physical targets.

 

 

 

The default value is 0.

 

 

 

 

 

 

FAILBACK_MODE

Indicates Automatic (0) or Manual (1) failback.

smallint

 

 

Failback occurs when a previously unavailable

 

 

 

Encryption Engine comes back online. In Auto mode,

 

 

 

the restored Encryption Engine resumes encrypting all

 

 

 

traffic for target containers configured on the

 

 

 

Encryption Engine. In manual mode, encryption

 

 

 

continues running on the backup encryption engines

 

 

 

until manually changed.

 

 

 

The default value is 0.

 

 

 

 

 

 

 

Boolean value that indicates whether a System Card

smallint

 

SYSTEM_CARD_REQUIRED

(smart card) must be inserted in the Encryption

 

 

 

Engine to enable the engine after power-up. This

 

 

 

feature is not yet supported.

 

 

 

The default value is 0.

 

 

 

 

 

 

ACTIVE_MASTER_KEY_

The operational status of the "master key" or "Key

smallint

 

STATUS

Encryption Key (KEK)" used to encrypt Data

 

 

 

Encryption Keys in a key vault. Not used for Decru

 

 

 

LKM key vaults. 0 = not used, 1 = required but not

 

 

 

present, 2 = present but not backed up,

 

 

 

3 = okay.

 

 

 

The default value is 0.

 

 

 

 

 

 

ALT_MASTER_KEY_STATUS

The operational status of an alternate "master key"

smallint

 

 

used to access older data encryption keys. Not used

 

 

 

for Decru LKM key vaults.

 

 

 

0 = not used, 1 = not present, 3 = okay.

 

 

 

The default value is 0.

 

 

 

 

 

 

QUORUM_SIZE

The number of authentication cards required to

smallint

 

 

approve certain secure operations. This feature is not

 

 

 

yet supported.

 

 

 

The default value is 0.

 

 

 

 

 

 

RECOVERY_SET_SIZE

No longer used. Previously used to indicate the

smallint

 

 

number of smart cards used to back up a Master Key.

 

 

 

The number of cards is now specified when the

 

 

 

backup is created, and not persisted in the database.

 

 

 

The default value is 0.

 

 

 

 

 

 

KEY_VAULT_TYPE

Indicates the type of key vault used by switches in this

smallint

 

 

Encryption Group.

 

 

 

0 = Decru Lifetime Key Manager (LKM),

 

 

 

1 = RSA Key Manager (RKM),

 

 

 

2 = Brocade internal key storage (for demo use only).

 

 

 

The default value is 0.

 

 

1418

Brocade Network Advisor IP User Manual

 

53-1003056-01

Page 1470
Image 1470
Brocade Communications Systems IP250 user manual Database tables and fields Encryptiongroup