Encrypt Volume

Overview

This function encrypts existing volumes.

"Standard", "WSV", and "SDV" type volumes can be encrypted.

Caution
  • When using this function, enable the encryption mode. Refer to the [Setup Encryption Mode] function for details.

  • This function is used to prevent data leakage due to removal of drives, and cannot prevent data leakage caused by server access.

  • Encrypted volumes cannot be changed to non-encrypted volumes.

  • Canceling volume encryption is not possible.

  • This function cannot be used under the following conditions:
    • A RAID group diagnosis is being performed

    • A disk diagnosis is being performed

    • The hot controller firmware upgrade is being performed

    • The disk firmware is being applied

    • The status of the storage system is not "Normal"

  • The following volumes cannot be encrypted:
    • Volumes without the "Available" state

    • Volumes undergoing RAID Migration

    • Volumes undergoing encryption

    • Volumes undergoing formatting or LUN Concatenation

    • Volumes registered in a RAID group undergoing LDE

    • Volumes in which the drives that configure the RAID group are undergoing rebuild, copyback, or redundant copy

    • Volumes in which the drives that configure the RAID group are "Online SEDs", "Nearline SEDs", or "SSD SEDs"

    • Volumes that belong to a RAID group where the RAID level is "RAID6-FR"

    • Volumes with Storage Migration paths

    • Volumes that are used for the Storage Cluster function

  • The following performance may be degraded for encrypted volumes compared with non-encrypted volumes:
    • Access to the encrypted volumes

    • Copy transfer of encrypted volumes

  • Up to 64 volumes can be encrypted at the same time. Note that if concatenated volumes are selected, the maximum number of volumes that can be encrypted is less than 64.

Note
  • TPVs cannot be encrypted with this function. TPVs that are created in an encrypted TPP are encrypted.

User Privileges

Availability of Executions in the Default Role

Default role Availability of executions
Monitor  
Admin
StorageAdmin
AccountAdmin  
SecurityAdmin  
Maintainer

Refer to "User Roles and Policies" for details on the policies and roles.

Operating Procedures

  1. Select the volume that is to be encrypted (multiple selections can be made) and click [Encrypt Volume] in [Action].

    → A confirmation screen appears.

    Caution
    • [Encrypt Volume] cannot be clicked under the following conditions:
      • External Volumes (or volumes whose "Usage" is "Migration") are selected

      • Volumes which belong to a RAID group for which the Stripe Depth value is changed (*1) are selected

        *1  :  A RAID group for which the Stripe Depth value in the [RAID Group Detail] screen of the [RAID Group (Basic Information)] screen is 128KB or more. Note that the Stripe Depth value for RAID1 cannot be changed.
  2. Click the [OK] button.

    → Encryption of the volume starts.

  3. Click the [Done] button to return to the [Volume] screen.