Sun Microsystems, Inc.  Oracle System Handbook - ISO 7.0 May 2018 Internal/Partner Edition
   Home | Current Systems | Former STK Products | EOL Systems | Components | General Info | Search | Feedback

Asset ID: 1-71-2102310.1
Update Date:2016-02-02
Keywords:

Solution Type  Technical Instruction Sure

Solution  2102310.1 :   Oracle ZFS Storage Appliance: How to confirm the functionality of ZFS Encrypted Filesystem on a share.  


Related Items
  • Sun ZFS Storage 7320
  •  
  • Oracle ZFS Storage ZS3-BA
  •  
  • Oracle ZFS Storage Appliance Racked System ZS4-4
  •  
  • Oracle ZFS Storage ZS3-2
  •  
  • Oracle ZFS Storage ZS3-4
  •  
  • Sun ZFS Storage 7420
  •  
  • Oracle ZFS Storage ZS4-4
  •  
  • Sun ZFS Storage 7120
  •  
Related Categories
  • PLA-Support>Sun Systems>DISK>ZFS Storage>SN-DK: ZS
  •  




In this Document
Goal
Solution
References


Created from <SR 3-12051140091>

Applies to:

Oracle ZFS Storage ZS4-4 - Version All Versions to All Versions [Release All Releases]
Oracle ZFS Storage ZS3-2 - Version All Versions to All Versions [Release All Releases]
Oracle ZFS Storage ZS3-BA - Version All Versions to All Versions [Release All Releases]
Sun ZFS Storage 7120 - Version All Versions to All Versions [Release All Releases]
Oracle ZFS Storage ZS3-4 - Version All Versions to All Versions [Release All Releases]
7000 Appliance OS (Fishworks)

Goal

How can the functionality of ZFS Encrypted Filesystem be confirmed?

 

Solution

The ZFS Encrypted Filesystem feature on the Oracle ZFS Storage Appliance is for the purpose of physical data security.

Without the encryption key present the encrypted data will not be accessible.

If the key is removed - or the disks relocated to another system - the data will not be accessible.

It is very important that a secured backup of this key exist, for without it there is no other way to access the data.

  • Backup the encryption key for the share being tested.
  • Delete the encryption key for the share being tested.
  • Test access to the encrypted share - to confirm it is inaccessible.
  • Once confirmed it is inaccessible, recreate / restore the encryption key.
  • Confirm access to the encrypted share is restored.

 

 

References:

 Best Practices for Deploying Encryption and Managing Its Keys on the Oracle® ZFS Storage Appliance

 Oracle® ZFS Storage Appliance Administration Guide, Working with Data Encryption

 

 

References

<NOTE:1019887.1> - Sun Storage 7000 Unified Storage System: How to Collect a Support Bundle using the BUI or CLI
<NOTE:1955509.1> - Encryption with the Oracle ZFS Storage Appliance

Attachments
This solution has no attachment
  Copyright © 2018 Oracle, Inc.  All rights reserved.
 Feedback