hit counter script

Prepare The New Node For Encryption - Dell DD9410 Manual

Table of Contents

Advertisement

# reg show config_fixed.scsitgtd
config_fixed.scsitgtd.state = 2
config_fixed.scsitgtd.transport.port.1.name = 1a
config_fixed.scsitgtd.transport.port.1.transport = 1
config_fixed.scsitgtd.transport.port.2.name = 1b
config_fixed.scsitgtd.transport.port.2.transport = 1
config_fixed.scsitgtd.transport.port.3.name = 2a
config_fixed.scsitgtd.transport.port.3.transport = 1
config_fixed.scsitgtd.transport.port.4.name = 2b
config_fixed.scsitgtd.transport.port.4.transport = 1
config_fixed.scsitgtd.transport.port.id.1 = 1
config_fixed.scsitgtd.transport.port.id.2 = 2
config_fixed.scsitgtd.transport.port.id.3 = 3
config_fixed.scsitgtd.transport.port.id.4 = 4
3. Compare the command output from both nodes.
● If the values on both nodes match, proceed with the HA upgrade.
● If the values on both nodes do not match, the values must be changed to be the same on both nodes before proceeding
with the HA upgrade. If VTL or DFC is configured and running on the existing node, modify the port indexes on the new
node to match the existing node. Contact Dell EMC support to make changes in the system registry.

Prepare the new node for encryption

If the existing node uses the DD Encryption feature, additional steps are required on the new node before configuring HA. Skip
this task if the existing node does not use DD Encryption.
About this task
This task requires completing steps on both the new and existing nodes.
Steps
1. On the new node, set the system passphrase to match the system passphrase on the existing node.
Run the following command:system passphrase set <passphrase>
2. If the existing node uses the KeySecure external key manager, copy the KeySecure certificates from the existing node and
import them on the new node.
a. On the existing node, display the KeySecure certificates.
Run the following command:adminaccess certificate show keysecure
b. On the existing node, copy the KeySecure certificates from the /ddvar/certificates directory to the USB flash
drive.
c. On the new node, copy the KeySecure certificates from the USB flash drive to the /ddvar/certificates directory.
d. On the new node, import the KeySecure certificates.
Run the following command:adminaccess certificate import keysecure
e. On the new node, display the KeySecure certificates.
Run the following command:adminaccess certificate show keysecure
3. If the existing node uses the KeySecure external key manager, export the keys from the existing node and copy them to the
new node.
a. On the existing node, display the KeySecure keys.
Run the following command:filesys encryption keys show
b. On the existing node, export the KeySecure keys and copy them to the USB flash drive.
Run the following command: filesys encryption keys export
c. On the new node, copy the KeySecure keys from the USB flash drive to the /ddr/var/.security/ directory.
d. On the new node, display the KeySecure keys.
Run the following command:filesys encryption keys show
Single Node to HA Upgrade
91

Advertisement

Table of Contents
loading

This manual is also suitable for:

Dd9910

Table of Contents