Skip to main content
NetApp Knowledge Base

When is Onboard Key Manager (OKM)/NetApp Volume Encryption (NVE) restore work required?

Views:
104
Visibility:
Public
Votes:
0
Category:
ontap-9
Specialty:
core
Last Updated:

Applies to

  • Onboard Key Manager (OKM)
  • NetApp Volume Encryption (NVE)
  • ONTAP 9.0 and later

Answer

  • Onboard Key Manager (OKM) has a backup feature that will allow for recovery in disaster scenarios.
  • In the event of a head swap, cfcard replacement or cfcard corruption, manual recovery of the keys has to be performed.
  • If there is no passphrase or securitykey-manager onboard show-backup data at that time, data access to the encrypted drive/volume will not be possible.
  • There is no case of using OKM passphrase or show-backup data other than the above restore operation.

Additional Information

additionalInformation_text
NetApp provides no representations or warranties regarding the accuracy or reliability or serviceability of any information or recommendations provided in this publication or with respect to any results that may be obtained by the use of the information or observance of any recommendations provided herein. The information in this document is distributed AS IS and the use of this information or the implementation of any recommendations or techniques herein is a customer's responsibility and depends on the customer's ability to evaluate and integrate them into the customer's operational environment. This document and the information contained herein may be used solely in connection with the NetApp products discussed in this document.