User Category Permission
Read-only users Disallowed
Technicians Disallowed
Completion Codes:
v UNSUPPORTED_HARDWARE
Cannot utilize encryption on unsupported hardware.
Troubleshooting: Contact support to verify encryption status.
v INVALID_RECOVERY_KEY_FRAGMENT
Recovery key fragment given does not match stored key.
Troubleshooting: Verify that the proper key(share) has been used
v GENERIC_FAILED
Generic encryption failure.
Troubleshooting: Contact support.
v INVALID_RECOVERY_KEY_USER
User is not a valid recovery key administrator.
Troubleshooting: Check that the user names provided are valid
v NO_LIVE_KEYSERVER_GATEWAY_NODE
There is no live key server gateway node on the system.
Troubleshooting: Please restart the key server gateway node and retry.
v CANNOT_READ_FROM_KEY_REPOSITORY
Failed reading keys from the key repository.
Troubleshooting: Contact support.
v RK_FAILED_VERIFY_SLEEP
Too many failed verify attempts, please wait and try again.
Troubleshooting: Wait a little and retry.
v ENCRYPTION_KR_WRITE_FAILED
Error writing to the key repository.
Troubleshooting: Contact support
v RK_ENTER_SYSTEM_STATE_INVALID
Command is supported in maintenance mode only.
Troubleshooting: Switch system state to maintenance mode.
v INVALID_RECOVERY_KEY_STATE
Recovery key state is inconsistent with the option provided.
Troubleshooting: Check the recovery key state using encrypt_recovery_key_list.
v RECOVERY_KEY_ALREADY_VERIFIED
The recovery key has already been verified.
Troubleshooting: Check the recovery key state using encrypt_recovery_key_list
Recovery Key Generation
Specifies the security administrators that receive recovery key shares, and the
minimum number of recovery key shares that need to be entered.
encrypt_recovery_key_generate users=Users [ min_req=MinRequired ]
Chapter 23. Encryption enablement and support commands
497