OKM正在使用:ANDU验证错误:一个或多个加密密钥 状态不可用
适用场景
- ONTAP 9
- 自动化无中断更新(ANDU)
- 板载密钥管理器(OKM)
问题描述
- 已配置OKM—如果命令
security key-manager onboard show-backup
确实输出备份、则可以对此进行确认。 - 自动无中断升级(ANDU)验证失败、并显示以下错误:
cluster::> cluster image update -version <version>
Starting validation for this update...
It can take several minutes to complete validation...
...
Pre-update Check Status Error-Action
--------------------- ---------- --------------------------------------------
Encryption Keys Error Error: One or more encryption keys are
status unavailable.
Action: Restore missing encryption keys
before starting ANDU. To check missing keys,
run "security key-manager key query
-restored false". To restore onboard key
manager keys, run "security key-manager
onboard sync" command. To restore external
key manager keys, run "security key-manager
external restore" command. To restore Azure
Key Vault keys, run the "security
key-manager external azure restore"
command. To restore Google Cloud Key
Management Service keys, run the "security
key-manager external gcp restore" command.
- ANDU验证在运行后一直失败:
security key-manager onboard sync