由于Keymanager还原了密钥、交还被否决
适用场景
- 外部密钥管理器
- NetApp 卷加密 (NetApp Volume Encryption, NVE)
- ONTAP 9
问题描述
- 已启动ANDU以进行ONTAP升级
- 由于密钥管理器、数据聚合的交还被否决
Cluster::*> sto fa show-giveback
(storage failover show-giveback)
Partner
Node Aggregate Giveback Status
-------------- -------------------- --------------------------------------------
Node1 CFO Aggregates Done
aggr_data
Failed: Operation was vetoed by keymanager.
Check the event log Node2
No aggregates to give back
3 entries were displayed.
Cluster::*> event log show -severity AlERT
Time Node Severity Event
------------------- ---------------- ------------- ---------------------------
6/17/2023 21:37:04 Node1 ALERT sfo.giveback.failed: Giveback of aggregate aggr_data failed due to Giveback was vetoed..
6/17/2023 21:37:04 Node1 ALERT sfo.sendhome.subsystemAbort: The giveback operation of 'aggr_data' was aborted by 'keymanager'.
- 卷加密密钥在ONTAP密钥缓存中显示已还原
Cluster::*> security key-manager external show-status -key-server-status !available
There are no entries matching your query.
Cluster::*> security key-manager key query -node * -restored false
There are no entries matching your query.