HP Secure Encryption manual Feature Description

Models: Secure Encryption

1 77
Download 77 pages 59.56 Kb
Page 7
Image 7

Feature

Description

Notes

 

 

 

Controller key cache

HP Smart Array Controllers can optionally

Remote Mode only

 

store all keys required at boot time inside

 

 

the controller, enabling the server to

 

 

survive a variety of network outages.

 

Controller password

Protects the server in the event of theft by

For more information, see "Set or

 

applying a secondary password upon

change the controller password (on

 

boot to lock down the controller.

page 36)."

 

 

 

Dynamic Encryption

Enables smooth transitions between local

 

and remote modes, the conversion of

 

 

plaintext data to encrypted data, and

 

 

rekey services for both data and key

 

 

wraps.

 

Encryption keys

Data is protected using a series of keys

 

that provide layered protection at the

 

 

volume and drive levels. The solution

 

 

utilizes XTS-AES 256-bit encryption.

 

Firmware lock

Prevents controller firmware from being

For more information, see

 

updated unintentionally or by

"Enabling/disabling the firmware

 

unauthorized personnel.

lock (on page 46)."

 

 

 

Hardware-based encryption

Utilizes the HP Smart Array Controller

For more information about Smart

 

hardware to accelerate all cryptographic

Array controllers, see the HP website

 

algorithms when securing data and keys.

(http://www.hp.com/products/sma

 

 

rtarray).

 

 

 

HP Enterprise Secure Key

The HP ESKM or later unifies and

Remote Mode only. For more

Manager 3.1 and later

automates an organization’s encryption

information, see "HP Enterprise

 

controls by securely creating, protecting,

Secure Key Manager 3.1 and later

 

serving, controlling, and auditing access

(on page 11)."

 

to encryption keys.

 

HP ESKM key search

Individual Drive Encryption Keys are

Remote Mode only. For more

 

visible by serial number identification on

information, see "Running queries

 

the HP ESKM to enable unique tracking

(on page 57)."

 

and management from a central location.

 

 

The HP ESKM supports query by serial

 

 

number, server name, bay number, PCI

 

 

slot, and date.

 

HP Smart Storage

HP Smart Storage Administrator

For more information, see "HP Smart

Administrator

v1.60.xx.0 and later provides the

Storage Administrator (on page 9)."

 

configuration and management of the

 

 

cryptographic features of HP Secure

 

 

Encryption associated with HP Smart

 

 

Array Controllers.

 

Overview 7

Page 7
Image 7
HP Secure Encryption manual Feature Description