Index

A

AES (Advanced Encryption Standard), 169 configuring for a volume , 53

configuring the default algorithm for volumes , 42 supported key lengths , 17

assigning a new owner to a volume, 86 authorized user keys , 24

capabilities, 24

displaying the authorized user keys IDs for a volume, 131

autostart configuring, 62, 72

B

backing up EVFS volumes, 102, 105, 121 nonmirrored volumes, 121

online

with LVM mirrors, 105 with VxVM mirrors, 112

backup data restoring, 125

boot disk restrictions, 51, 66

boot_local flag, 41, 62, 72 boot_local2 flag, 41, 62, 72 boot_remote flag, 41, 63, 73

bpd (number of data blocks decrypted), 131 bpe (number of data blocks encrypted), 131 bpr (data blocks read), 131

bpw (data blocks written), 131

C

changing owner keys, 86 cluster key pair

creating, 159 definition, 159

installing on adoptive nodes, 161 collecting data, 139

commands EVFS, 25

configuration examples, 47

D

daemon evfsevold, 80

data blocks read (bpr), 131 data blocks written (bpw), 131 decryption

statistics, 131

decryption throughput (dkbps), 131 device special files

for EVFS, 52

digest (message digest) algorithm displaying, 132

dirty bit, 138

resetting, 106, 107, 109, 113, 115, 117 disabling

access to EVFS volumes, 81 displaying

volume information, 130 dkbps (decryption throughput), 131

E

ekbps (encryption throughput), 131

EMD

allocating space for, 51 creating, 52 definition, 20 destroying, 90, 149 displaying information about, 84

displaying the size of the EMD for a volume, 132 recovering, 89

verifying, 133

enabling EVFS for a volume, 54, 149 encryption

statistics, 131 verifying, 59, 69

encryption algorithm

configuring default for EVFS volumes, 42 configuring for a volume, 53 displaying, 132

encryption metadata (see EMD) encryption throughput (ekbps), 131 envelopes (see key records)

error messages

cannot retrieve private key, 136 cannot store public key, 135 EMD is dirty, 138

evol busy, 137

key loading failure, 135, 136 map error, 137

not found in /etc/evfs/evfstab file, 136 valid EMD already exists, 136

/etc/evfs/evfs.conf file, 39, 42 /etc/evfs/evfstab, 62, 72 /etc/evfs/pkey directory, 39 /etc/fstab file, 57 /etc/rc.config.d/evfs, 62, 72 evfs

pseudo-user account, 37 EVFS commands, 25, 149–151EVFS volumes

reporting the names of, 130 reporting the number of, 130 reporting the states of, 130

evfsadm

map command, 51, 149 start command, 43, 80, 149 stat command, 59, 69, 130, 151 stop command, 82, 149

171

Page 171
Image 171
HP UX Encrypted Volume and Filesystem (EVFS) manual Index, Emd