Changing the key management modeChanging the key management mode
The key management mode can be changed between local and remote key management. Encrypted HPE Persistent Memory modules
remain encrypted, but the passwords and the storage of those passwords change, based on the key management mode selected.
IMPORTANT:IMPORTANT:
Be sure to observe all pop-up messages displayed in UEFI System Utilities that pertain to persistent memory. Failure to
follow the instructions in these messages might cause persistent memory data loss.
ProcedureProcedure
1. From the System Utilities screen, select System ConfigurationSystem Configuration > BIOS/Platform Configuration (RBSU)BIOS/Platform Configuration (RBSU) > Server SecurityServer Security > DeviceDevice
Encryption OptionsEncryption Options.
2. Change the Key Management setting to one of the following:
LocalLocal—Enables local key management. The password used for encryption is stored locally on the server.
HPE TPM 2.0 must be installed to view and select this setting.
RemoteRemote—Enables remote key management. The password used for encryption is stored on a remote key server.
HPE iLO must be enrolled in and connected to a key manager to view and select this setting.
3. Press the F12F12 key to save and exit.
4. Reboot the server.