Complete the Startup Wizard
Dell Compellent 131
About Secure Data
SecureDataisalicensedfeaturethatprovidesdata‐at‐restencryptionwithkey
management.UsingSecureDatatomanageSEDsrequiresanexternalkeymanagement
server.Ifakeymanagementserverhasnotbeenconfiguredorisunavailable,youcan
manageFIPSSEDsintoaSecureDatafolder,howeverthe
disksremaininapendingstate
untilthekeymanagementserverisavailable.
EachFIPSdiskinStorageCenterhasaninternalMediaEncryptionKey(MEK).Thekey
residesonthedisk,providingencryptionfordatawrittentothediskanddecryptionfor
dataasitisreadfromthedisk.
Destroyingthekeymakesanydataonthediskimmediately
andpermanentlyunreadable,aprocessreferredtoasacryptoerase.WhenyouaddanSED
to,orreleaseanSEDfromaSecureDatafolder,theMEKisdestroyedandanewkeyis
generated.Thisallowsthedisk
tobereused,althoughallpreviousdataislost.
Toprotectdataatrest,allSEDsinaSecureDatadiskfolderlockwhenpowerisremoved
(LockonResetenabled).Whenpowerisremovedfromthedrive,thedrivecannotbe
unlockedwithoutaccesstotheauthoritycredentialstoredin
thekeymanagementserver.
Note: BecausedisksthatcontainuserdatacannotbemovedfromaSecureData
folder,StorageCenterdoesnotcryptoerasedisksthatcontainuserdata.