Chapter 7: Encryption Key Management
EKM Path Diagnostics
182 Quantum Scalar i40 and Scalar i80 User’s Guide
6 Back up both SKM servers following the instructions in the
Scalar
Key Manager User’s Guide
.
Caution: You must back up both SKM servers every time you
generate new data encryption keys to protect against
catastrophic server failure.
Step 8: Save the Library
Configuration
See Saving the Library Configuration on page 107 for instructions.
EKM Path Diagnostics
The EKM Path Diagnostics consists of a series of short tests to validate
whether the key servers are running, connected, and able to serve keys
as required.
There are two ways to run EKM Path Diagnostics:
• Manually — Run the Manual EKM Path Diagnostics any time you
change the key server settings or library encryption settings. See
Running Manual EKM Path Diagnostics on page 183 for details.
• Automatically — This feature runs automatically in the background
and generates diagnostic tickets if there are problems. You can turn
this feature off but it is recommended that you leave it on. See
Enabling Automatic EKM Path Diagnostics on page 184 for details.
Description The EKM Path Diagnostics consists of the following tests:
• Ping — Verifies the Ethernet communication link between the
library and the key servers.
• Path — Verifies that EKM services are running on the key servers.
• Config — Verifies that the key servers are capable of serving
encryption keys.