Managing Self-Encrypting Drives on DGX Station A100
DGX Station A100 DU-10189-001 _v5.0.2|34
5.7. Exporting the Vault
Here is some information about how you can export the vault.
To export all drive keys to a file, use the export function.
Tip: When you run this command, you must include the vault password.
$ sudo nv-disk-encrypt export -k <your-vault-password>
The /tmp/secrets.out file contains the mapping of disk serial numbers to drive passwords.
5.8. Erasing Your Data
Explain the benefits of the task, the purpose of the task, who should perform the task, and
when to perform the task in 50 words or fewer.
Stop cachefilesd and unmount the RAID array
CAUTION: When you complete this task, all data will be lost. On DGX Station A100 systems,
these drives generally form a RAID 0 array, which will also be destroyed when you performe an
erase.
After you initialize the system for SED management, use the nv-disk-encrypt command to
erase data on your drives .
1. To completely stop the RAID, issue the following commands:
$ systemctl stop cachefilesd
$ sudo umount /raid
$ sudo mdadm --stop /dev/md1
2. Complete the erase.
$ sudo nv-disk-encrypt erase
This command does the following:
‣
Sets the drives in an unlocked state.
‣
Disables locking on the drives.
‣
Removes the RAID 0 array configuration.
3. To rebuild the RAID, issue the following command:
$ sudo /usr/bin/configure_raid_array.py -c -f