- Community Home
- >
- Storage
- >
- Data Protection and Retention
- >
- StoreEver Tape Storage
- >
- MSL2024, standalone LTO-4 drives and encryption
StoreEver Tape Storage
1753886
Members
7514
Online
108809
Solutions
Forums
Categories
Company
Local Language
back
Forums
Discussions
Forums
- Data Protection and Retention
- Entry Storage Systems
- Legacy
- Midrange and Enterprise Storage
- Storage Networking
- HPE Nimble Storage
Discussions
Discussions
Discussions
Forums
Discussions
back
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
- BladeSystem Infrastructure and Application Solutions
- Appliance Servers
- Alpha Servers
- BackOffice Products
- Internet Products
- HPE 9000 and HPE e3000 Servers
- Networking
- Netservers
- Secure OS Software for Linux
- Server Management (Insight Manager 7)
- Windows Server 2003
- Operating System - Tru64 Unix
- ProLiant Deployment and Provisioning
- Linux-Based Community / Regional
- Microsoft System Center Integration
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Blogs
Information
Community
Resources
Community Language
Language
Forums
Blogs
Topic Options
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
06-21-2009 02:04 PM
06-21-2009 02:04 PM
MSL2024, standalone LTO-4 drives and encryption
I'm in the midst of replacing an SDLT library with an MSL2024 and I’m getting conflicting information concerning hardware encryption.
Our production backups will be taken with the MSL2024 library, but we need to be able to take those tapes offsite and restore data using standalone LTO-4 drives (2 drives - one in each of two location, neither of which are installed in a library or autoloader).
It has been suggested I purchase two HP Storageworks MSL Encryption Kits to enable hardware encryption. However, in looking at the documentation/specifications, I don’t see how I it’s possible for those remote drives to utilize the encryption kit.
As I understand it, the USB key server token from the kit must be in the library when backups are performed, so it can’t be moved to a different location without affecting production backups. Further, even if I could use one of the 4 USB keys I’d get with two kits, where would I put the USB key on the standalone drives? Everything I see says it only works with libraries/autoloaders and the USB key is inserted into the drive, not the server running the backup software.
Am I misunderstanding something here? I’m currently using software encryption available within Backup Exec – will I need to continue to do that based on our requirements and just forget the hardware encryption built into these new drives?
Thank you!
Our production backups will be taken with the MSL2024 library, but we need to be able to take those tapes offsite and restore data using standalone LTO-4 drives (2 drives - one in each of two location, neither of which are installed in a library or autoloader).
It has been suggested I purchase two HP Storageworks MSL Encryption Kits to enable hardware encryption. However, in looking at the documentation/specifications, I don’t see how I it’s possible for those remote drives to utilize the encryption kit.
As I understand it, the USB key server token from the kit must be in the library when backups are performed, so it can’t be moved to a different location without affecting production backups. Further, even if I could use one of the 4 USB keys I’d get with two kits, where would I put the USB key on the standalone drives? Everything I see says it only works with libraries/autoloaders and the USB key is inserted into the drive, not the server running the backup software.
Am I misunderstanding something here? I’m currently using software encryption available within Backup Exec – will I need to continue to do that based on our requirements and just forget the hardware encryption built into these new drives?
Thank you!
1 REPLY 1
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
06-22-2009 12:24 AM
06-22-2009 12:24 AM
Re: MSL2024, standalone LTO-4 drives and encryption
Hello Robert, what you want to do here might not be working. The encription key is used with the library and a standalone drive would not work with it. You would need at least the 1/8 Autloader for it. The USB token is inserted in the library controller and not in the drive, even the drive is handling it, but a standalone drive does not have a usb port for it. There is also another issue you would need the token also at the backup site to read the data.
Here is important to understand the hardware encrytion, anyone need to handle the keys for the encrytion. Without a key you do not get you data back. You might check here for details regarding the usb keys: http://bizsupport1.austin.hp.com/bc/docs/support/SupportManual/c01482894/c01482894.pdf
There could be other ways of key management, like an enterprise solution with SKM or thru another software application, like the backup application. In any case to be prepared for a desaster the keys need be also in another safe place.
I hope that answers the question.
Ralf.
Here is important to understand the hardware encrytion, anyone need to handle the keys for the encrytion. Without a key you do not get you data back. You might check here for details regarding the usb keys: http://bizsupport1.austin.hp.com/bc/docs/support/SupportManual/c01482894/c01482894.pdf
There could be other ways of key management, like an enterprise solution with SKM or thru another software application, like the backup application. In any case to be prepared for a desaster the keys need be also in another safe place.
I hope that answers the question.
Ralf.
The opinions expressed above are the personal opinions of the authors, not of Hewlett Packard Enterprise. By using this site, you accept the Terms of Use and Rules of Participation.
News and Events
Support
© Copyright 2024 Hewlett Packard Enterprise Development LP