由于SKLM证书更改、检索密钥时权限被拒绝
适用场景
- ONTAP 9
- NetApp 卷加密 (NetApp Volume Encryption, NVE)
- IBM 安全密钥生命周期管理器( SKLM )
问题描述
- 使用SKLM密钥服务器加密的NVE卷
- 已续订SKLM主机证书
- 控制器重新启动后、无法将密钥提取到ONTAP 缓存中
- 密钥服务器
Available
在运行时显示""状态key-manager external show-status
Warning: Unable to list entries on node <node>. KMIP "Get" command failed
on external key server "IP_addess:5696". Cryptsoft error: "Response
status: OPERATION_FAILED. Reason: PERMISSION_DENIED. Message:
xxxxxxxx The KMIP user is not authorized to access the target
object.".