Dell PowerVault TL4000 Faq - Page 7

Parcourez en ligne ou téléchargez le pdf Faq pour {nom_de_la_catégorie} Dell PowerVault TL4000. Dell PowerVault TL4000 26 pages. Tape library
Également pour Dell PowerVault TL4000 : Notes de mise à jour (3 pages), Pour commencer (38 pages), Manuel de démarrage rapide (7 pages), Manuel du logiciel (16 pages), Manuel de configuration (22 pages), Informations importantes Manuel (10 pages), Addendum au manuel de l'utilisateur (2 pages), Manuel de démarrage (3 pages), Instructions sur les pièces jointes (17 pages), Brochure (4 pages), Manuel de l'utilisateur (20 pages)

Dell PowerVault TL4000 Faq
NOTE:
Read the following information before using your Dell PowerVault TL2000,
TL4000, or ML6000 tape libraries.
Dell Encryption Key Manager and
Library Managed Encryption
This document covers the Dell Encryption Key Manager and Library
Managed Encryption used on the Dell PowerVault TL2000, TL4000,
and ML6000 tape libraries.

Best Practices

It is not possible to overstate the importance of backing up the key store once it is
populated with keys and every time keys are added to the key store. If the keys are
lost, the data encrypted with the keys is lost forever.
The key store should be backed up to non-encrypted media. The keys are
encrypted within the key store so there is no security concern with this process.
The key store should not be backed up to media encrypted with the keys in the
key store as the backup is no longer available if the key store is deleted or
corrupted. The Dell Encryption Key Manager (EKM) GUI allows for the key
store to be backed up every time a configuration change is made.
To prevent possible data loss due to an EKM server failure, it is recommended
to use a primary and redundant (secondary) EKM server. This configuration
provides redundancy in the event the primary EKM server is down or
unavailable. For information on configuring a primary and redundant
(secondary) EKM server for your library, follow the steps under "How do I create
a redundant EKM based on a primary EKM server?" on page 11. If two
independent EKMs are installed and configured through the defaults, the key
stores cannot be merged later due to identical key aliases.
It is recommended that the primary and redundant EKM servers be
synchronized every time changes are made to the primary EKM. In addition,
since the two methods of synchronization in the Dell Encryption Key Manager
User's Guide do not act on the keystore or key groups XML file, both of which
are essential to reading encrypted data from the media, they should be copied
to the redundant EKM server any time new media is allocated by EKM.
For more information, see "How do I synchronize the redundant EKM anytime
configuration changes (like adding keys, adding key groups, adding drives, and so
on) are made to the primary EKM?" on page 12.
7

Dell Encryption Key Manager and Library Managed Encryption