无法同步MetroCluster IP配对集群上的板载密钥管理密钥
适用场景
- MetroCluster IP
- 板载密钥管理器( OKM )
问题描述
- 在 MetroCluster IP的站点A中设置板载密钥管理器后,无法 通过命令同步MetroCluster IP的SIWEB上的密钥
security key-manager onboard sync
,并显示以下错误消息:
Error: command failed: This command is available only when the Onboard Key Manager is enabled. Use the "security key-manager onboard enable" command to enable the Onboard Key Manager and then try again.
- 但正如指示的那样
security key-manager onboard enable
,在尝试运行SIEB时,会显示一个自相矛盾的错误:
Error: command failed: This cluster is part of a MetroCluster configuration. The Onboard Key Manager has already been configured at the partner site. Run the "security key-manager onboard sync" with the same passphrase before proceeding with any key manager operations. Failure to do so could lead to switchover or switchback failure.
metrocluster check show
:
Component Result
------------------- ---------
nodes ok
lifs ok
config-replication warning
aggregates ok
clusters warning
connections ok
volumes ok
metrocluster check config-replication show:
Vserver流恢复步骤: Run the "metrocluster vserver show" command for more details.
metrocluster vserver show
表示Vserver停留在pending-setup
状态
配置状态: pending-setups