Which key should be applied to NSE disks ?
Applies to
- ONTAP 9
- Netapp Storage Encryption (NSE)
- Onboard Key Manager (OKM)
Answer
- ONTAP generates 2 authentication keys on the Onboard Key Manager (OKM) for NSE drives
- Either can be used to apply to the data key id and / or the fips key id. They are interchangeable.
- Optionally the NSE key can be applied to the fips key id for added protection.
WARNING
Do not delete the unused key !
