PowerVault TL4000

Dell PowerVault TL4000 ユーザーガイド

  • こんにちは!Dell PowerVault Encryption Key Manager ユーザーズガイドの内容をすべて読み終えました。このドキュメントで説明されているデバイスに関するご質問にお答えできます。LTOテープドライブの暗号化、鍵管理、サーバー構成、トラブルシューティングなど、様々なトピックについて詳しい情報がありますので、お気軽にご質問ください。
  • 鍵ストアデータを保護するにはどうすればよいですか?
    Encryption Key Managerサーバーの構成方法を教えてください。
    エラーメッセージが表示された場合、どうすれば解決できますか?
    複数のKey Managerサーバーを使用して冗長性を確保するにはどうすればよいですか?
Dell
TM
PowerVault
TM
Encryption Key Manager
ユーザーズ・ガイド
Dell
TM
PowerVault
TM
Encryption Key Manager
ユーザーズ・ガイド
© 2007, 2010 Dell Inc. All rights reserved.
Dell Inc. Dell DELL
PowerVault Dell Inc.
Dell Inc.
.................v
.................vii
..............ix
..............ix
............ix
........ix
...............x
................x
Linux ..............x
Microsoft Windows .........x
..........x
........xi
Dell ..............xi
1 .....1-1
.............1-1
.............1-3
...1-5
......1-6
.............1-6
2 Encryption Key Manager
...............2-1
........2-1
Encryption Key Manager . . 2-1
....2-2
....2-2
Linux ....2-2
Windows . . 2-3
.........2-4
JCEKS ...........2-4
LTO 4 LTO 5
................2-4
......2-6
Key Manager . . 2-8
Encryption Key Manager ....2-9
.....2-11
...............2-11
Federal Information Processing Standard (
) 140-2 .......2-12
3 Encryption Key Manager
......3-1
Key Manager ISO
.............3-1
Linux Encryption Key Manager
................3-2
Windows Encryption Key Manager
................3-3
GUI
..............3-6
LTO 4 LTO 5
..............3-12
......3-17
4 Encryption Key Manager
................4-1
GUI Encryption Key Manager 4-1
...............4-1
...4-1
2 Key Manager
...............4-2
...............4-4
5 Encryption Key Manager
................5-1
Key Manager
................5-1
...5-6
CLI .............5-9
6 ..........6-1
Encryption Key Manager
.............6-1
CLI EKM
...............6-2
Key Manager .....6-3
Encryption Key Manager 6-6
..............6-11
Config File not Specified (
)...........6-11
Failed to Add Drive (
)................6-12
Failed to Archive the Log File (
)......6-12
Failed to Delete the Configuration (
)...........6-12
Failed to Delete the Drive Entry (
)........6-13
Failed to Import ( ) 6-13
Failed to Modify the Configuration (
)..........6-13
File Name Cannot be Null (
)..........6-14
iii
File Size Limit Cannot be a Negative Number
(
)..............6-14
No Data to be Synchronized (
).............6-15
Invalid Input ( )........6-15
Invalid SSL Port Number in Configuration File
( SSL ). 6-15
Invalid TCP Port Number in Configuration File
( TCP ) 6-16
Must Specify SSL Port Number in Configuration
File ( SSL
)..........6-16
Must Specify TCP Port Number in Configuration
File ( TCP
)..........6-17
Server Failed to Start (
).............6-17
Sync Failed ( ) ....6-17
The Specified Audit Log File is Read Only (
) . 6-18
Unable to Load the Admin Keystore (
).........6-18
Unable to load the keystore (
).............6-19
Unable to Load the Transport Keystore (
).......6-19
.......6-20
7 ........7-1
..............7-1
..........7-1
Audit.event.types ............7-1
Audit.event.outcome ...........7-2
Audit.eventQueue.max ..........7-2
Audit.handler.file.directory .........7-3
Audit.handler.file.size ..........7-3
Audit.handler.file.name ..........7-3
Audit.handler.file.multithreads ........7-4
Audit.handler.file.threadlifespan .......7-4
........7-5
Encryption Key Manager ...7-5
...........7-6
............7-7
8 ......8-1
A. .....A-1
......A-1
Linux .........A-1
..........A-1
B. Encryption Key Manager
......B-1
Encryption Key Manager
.............B-1
CLI B-10
C. FAQ ( ) . . C-1
..............D-1
................D-1
...............E-1
...............X-1
iv
Dell Encryption Key Manager
1-1. Encryption Key Manager 4
............1-3
1-2.
2 ........1-5
1-3. ......1-8
2-1. LTO 4
LTO 5 ....2-5
2-2. LTO 4
LTO 5 ....2-6
2-3. (Backup
Critical Files) .......2-8
2-4. .......2-9
2-5. 2 2-10
2-6.
2 .......2-10
3-1. Choose Destination Location (
) .......3-4
3-2. JVM
..............3-4
3-3. Start Copying Files (
) ..........3-5
3-4. EKM Server Configuration (EKM
) ............3-7
3-5. EKM Server Certificate Configuration (EKM
) ....3-9
3-6. (Backup
Critical Files) ......3-10
3-7. >Create a Group of Keys (
).............3-18
3-8. Change Default Write Key Group (
)....
3-19
3-9. Assign Group to Drive (
)..........3-20
3-10. Delete Drive ( ).....3-21
5-1. Server Status ( ).....5-2
5-2. Login ( ) .....5-2
v
vi Dell Encryption Key Manager
1. ........ix
1-1. ...........1-8
2-1. Linux 2-3
2-2. Windows 2-3
6-1. Encryption Key Manager
.............6-6
7-1. Encryption Key Manager
......7-5
7-2. 7-7
8-1. ......8-2
vii
viii Dell Encryption Key Manager
Dell
Encryption Key Manager
v LTO 4 LTO 5
v
v
Encryption Key Manager
1.
[ ]
{ }
|
< >
ix
:
v Getting Started with the Dell
PowerVault
TL2000 and TL4000 Tape
Libraries
v Dell
PowerVault
TL2000 Tape Library and TL4000 Tape Library SCSI
Reference SCSI SCSI
Linux
Red Hat
URL Red Hat Linux
®
v http://www.redhat.com
SuSE
URL SuSE Linux
v http://www.suse.com
Microsoft Windows
URL Microsoft
®
Windows
®
v http://www.microsoft.com
http://support.dell.com
Dell Encryption Key Manager Quick Start Guide
http://www.dell.com
Library Managed Encryption for Tape LTO
x Dell Encryption Key Manager
Dell
800-WWW-DELL (800-999-3355)
:
Dell
Dell
Dell
1. http://support.dell.com
2.
3.
4.
5. Dell
xi
xii Dell Encryption Key Manager
1
1
Dell Encryption Key Manager ( Encryption Key Manager )
LTO 4 LTO 5 LTO 4 LTO 5
3
LTO 4 LTO 5
2-2
Dell
Encryption Key Manager 1-3
1-3
Encryption Key Manager Java Java
(Java
) Encryption Key
Manager 3
1-1
Java
Java Cryptography Extension (JCE)
Java 1
Java Runtime Environment
Encryption Key Manager (
)
Java
2-4
Encryption Key Manager
2-1 2 Encryption Key Manager
4-1 4 Encryption Key Manager
B
Encryption Key Manager
EKM
KeyGroups.xml
1-2 Dell Encryption Key Manager
Dell Encryption Key Manager Java
1
Encryption Key Manager Linux (SLES RHEL) Windows
Encryption Key Manager
Dell Encryption Key Manager
(GUI)
Encryption Key Manager 1
(
) 2-4
ストア
ドライブ・
テーブル
 ペアと
をします
/ Encryption Key
Manager
サポートするテープ・
デバイスを
トラックします
ストアの'(を)*し、
の,-を./します
Encryption Key
Manager
01を23し、
テープ・デバイスとの4での
の67を89します
a14m0234
キー・
グループ
<3
ファイル
01をグループに
@3します
Encryption Key Manager
1-1. Encryption Key Manager 4
1 1-3
Encryption Key Manager :
Dell Encryption Key Manager
ECC
Encryption Key Manager
LTO 4 LTO 5
Encryption Key Manager (
)
( )
( )
Encryption Key Manager
(ECC)
(Encryption Key Manager ) ECC
Encryption Key Manager TCP/IP
¥
Encryption Key Manager Encryption Key
Manager
Encryption Key Manager AES
LTO 4 LTO 5
Encryption Key Manager ID
2
Encryption Key Manager
2 1
1-4 Dell Encryption Key Manager
Key Manager
(Dell PowerVault TL2000/TL4000 ML6000
)
Encryption Key Manager
Library
ライブラリー・ドライブ・
インターフェース
アプリケーション
ポリシー
ポリシー
または
データ・パス
データ・パス
a14m0252
1-2. 2
1 1-5
v CommVault Galaxy 7.0 SP1
v Symantec Backup Exec 12
LTO 4 LTO 5
v Dell
PowerVault
TL2000
v Dell
PowerVault
TL4000
v Dell
PowerVault
ML6000
Dell
PowerVault
TL2000 Dell
PowerVault
TL4000 Dell
PowerVault
ML6000
LTO 4 LTO 5
Java
Encryption Key Manager
IBM T10
256 AES 256 AES
3
256 AES
Encryption Key Manager 2
256 AES
/ 1
/
Encryption Key Manager
( )
1-6 Dell Encryption Key Manager
/