SFO Giveback Failure Due to Key Manager Connectivity After NVDIMM Replacement
Applies to
- ONTAP 9
- FAS9000
- External Key Manager environments
Issue
- After NVDIMM replacement, the cluster completed CFO aggregate giveback successfully. However, SFO aggregate giveback failed due to key manager errors.
Log output
cluster::*> security key-manager show -statusNode Port Registered Key Manager Status------------- ----- ----------------------- ---------------node-03 5696 10.45.XX.XX not-respondingnode-03 5696 10.47.XX.XX not-respondingnode-04 5696 10.45.XX.XX availablenode-04 5696 10.47.XX.XX availablecluster::*> event log show -node * -event gb*Time Node Severity Event------------------- ---------------- ------------- ---------------------------11/19/2025 15:32:55 node-04 ERROR gb.sfo.veto.kmgr.keysmissing: Giveback of aggregate "node03_ssd_1" failed due to the unavailability of the volume encryption keys for the encrypted volumes of the aggregate on partner node "node-03".- SFO giveback failed because keys were not restored during boot due to key manager unavailability.
