Error when attempting to create ecrypted volume using NetApp Volume Encrpytion (NVE)
Applies to
- ONTAP 9.8
- NetApp Volume Encryption (NVE)
- Thales External Key Manager
Issue
- Error when attempting to create an encrypted volume using NetApp Volume Encryption (NVE) and Thales key server:
Reason: Failed to store NVE key with key ID "00000000000000000200000000000500c9b0XXXXXXXXXXXXXXXXXXXXa76008910000000000000000" on external keyserver "10.20.XX.XX:5696". Cryptsoft error: "Response status: OPERATION_FAILED. Reason: GENERAL_FAILURE. Message: DB_GENERAL".
OR
Reason: Failed to store NVE key with key ID "000000000000000002000000000005003ec7XXXXXXXXXXXXXXXXXXXX50705279c0000000000000000" on external key server
"10.20.XX.XX:5696". Cryptsoft error: "Response status: OPERATION_FAILED. Reason: GENERAL_FAILURE. Message:
[NCERRInsufficientPermissions]"
- In the KMIP2_client.log we see:
[kern_kmip2_client:info:7329] [Apr 13 14:16:22]: 0x80940eb00: 0: ERR: kmip2::kmipCmds::KmipCmd: [setStatusReasonAndMessage]:144: Response status: 1(OPERATION_FAILED)
...
[kern_kmip2_client:info:7329] [Apr 13 14:16:22]: 0x80940eb00: 0: ERR: kmip2::tables::kmip_keytable_v2: [create_imp]:717: EXIT: ; Returning Failed to store NVE key with key ID "00000000000000000200000000000500c9b0XXXXXXXXXXXXXXXXXXXXa76008910000000000000000" on external keyserver "10.20.XX.XX:5696". Cryptsoft error: "Response status: OPERATION_FAILED. Reason: GENERAL_FAILURE. Message: DB_GENERAL".