Option 1: Systems with onboard key manager server configuration
Restore the onboard key manager configuration from the ONATP boot menu.
Before you begin
You need the following information while restoring the OKM configuration:
• Cluster-wide passphrase entered
while enabling onboard key management.
•
Backup information for the Onboard Key Manager.
• Perform the
How to verify onboard key management backup and cluster-wide passphrase procedure
before proceeding.
Steps
1. From the ONTAP boot menu select option 10:
Please choose one of the following:
(1) Normal Boot.
(2) Boot without /etc/rc.
(3) Change password.
(4) Clean configuration and initialize all disks.
(5) Maintenance mode boot.
(6) Update flash from backup config.
(7) Install new software first.
(8) Reboot node.
(9) Configure Advanced Drive Partitioning.
(10) Set Onboard Key Manager recovery secrets.
(11) Configure node for external key management.
Selection (1-11)? _10_
2.
Confirm the continuation of the process.
This option must be used only in disaster
recovery procedures. Are you sure? (y or n):
y
3. Enter the cluster-wide passphrase twice.
While entering the passphrase the console will not show any input.
Enter the passphrase for onboard key management:
Enter the passphrase again to confirm:
4. Enter the backup information. Paste the entire content from the BEGIN BACKUP line through the
END BACKUP line.
Press the enter key twice at the end of the input.
12