Encrypting existing data
If you want to encrypt existing data on your storage system, you must migrate the data to an encrypted parity group. Use the following procedure to encrypt existing data.
Procedure
Create a new parity group.
Enable encryption on the new parity group as follows:
On the Parity Groups tab, select the target parity group, and then click Edit Encryption.
In the Edit Encryption window, select the parity group in the Available Parity Groups table, select Enable for Encryption, and then click Add.
The parity group is added to the Selected Parity Groups list.Click Finish.
In the Confirm window, confirm the settings, and enter your task name in Task Name.
If you want the Task window to open after you click Apply, select Go to tasks window for status.Click Apply, and then click OK in the message that appears.
Format the LDEVs in the encrypted parity group. For instructions, see the Provisioning Guide.
Migrate the existing data to the LDEVs in the encrypted parity group using ShadowImage or Volume Migration. For details about Volume Migration, contact your account team.
After the existing data has been migrated to the encrypted parity group, shred the (unencrypted) migration source volumes to prevent the data from being leaked. For instructions, see the Volume Shredder User Guide.
