Skip to main content

IBM System Storage DS8000 Disk Encryption Implementation and Usage Guidelines

Redbooks logo

An IBM Redpaper publication

Note: A new draft version of this publication is now available

Abstract

IBM® recognizes the requirement for data protection, not only from hardware or software failures, but also from physical relocation of hardware, theft, and re-tasking of existing hardware.

The IBM DS8000® Series now offers encrypted Fibre Channel drives. These Full Disk Encryption drive sets are used with key management services provided by IBM Tivoli® Key Lifecycle Manager software (TKLM) to allow encryption for data at rest on a DS8000 Storage System.

Use of encryption technology has a number of considerations that are critical for you to understand in order to maintain the security and accessibility of encrypted data.

This IBM Redpaper™ publication contains information that can help customers and storage administrators plan for disk encryption. It also explains how to install and manage the encrypted storage.

More importantly, this paper documents how to comply with IBM requirements for using the IBM DS8000 encrypted storage.

Table of contents

Chapter 1. Encryption overview
Chapter 2. DS8000 encryption mechanism
Chapter 3. DS8000 encryption implementation
Chapter 4. Best practices and guidelines for DS8000 encryption
Chapter 5. Integrating encryption devices
Appendix A. TKLM Installation

Profile

Publish Date
22 May 2009

Last Update
06 July 2009


Rating: Not yet rated


Author(s)

IBM Form Number
REDP-4500-00

Number of pages

110