Post motherboard replacement and onboard sync volumes came up offline
Applies to
- ONTAP
- Onboard Key Manager
- TPM
Issue
Post motherboard replacement, proper option 10 and onboard sync, subsequent reboot was unable to unseal the key heirarchy with newly created private sealed blob.
sysinit_thread: crypto.ssal.failed:alert]: SSAL operation failed: SSAL Unseal operation failed.
sysinit_thread: crypto.debug:info]: Onboard key hierarchy import failed: failed to create NKEK: 31.
sysinit_thread: crypto.okmrecovery.failed:alert]: ERROR: Import of the onboard key hierarchy failed: failed to import key hierarchy. Additional information: error: ssal unseal failed.