12.07.2015 Views

SECURING FIBRE CHANNEL FABRICS - Brocade

SECURING FIBRE CHANNEL FABRICS - Brocade

SECURING FIBRE CHANNEL FABRICS - Brocade

SHOW MORE
SHOW LESS
  • No tags were found...

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Chapter 11: <strong>Brocade</strong> Data Encryption ProductsThe <strong>Brocade</strong> encryption device features the following:• Up to 96 Gbps processing bandwidth for disk encryption• Up to 48 Gbps processing bandwidth for tape encryption withcompression• Encryption using the industry standard AES-256 algorithm• Compression using a variant of gzip• 8 Gbps FC port speeds• Disk encryption latency of 15–20 microseconds• Tape encryption and compression latency of 30–40 sec• <strong>Brocade</strong>-developed encryption ASIC technology• FC switching connectivity based on the <strong>Brocade</strong> Condor 2 ASIC• Dual Ethernet ports for HA synchronization and heartbeats• Smart Card reader used as a System Card (ignition key optional)The ignition key feature is built into the encryption solution at noextra cost and enabled as an option to enhance the level of securityon the switch. The ignition key is a Smart Card, which can beinserted into the Smart Card reader to initialize the cryptographicfunctionality of the switch. The <strong>Brocade</strong> Encryption Switchbehaves as a regular 8 Gbps Layer 2 FC switch only until the ignitionkey is inserted and encryption enabled.If the ignition key feature is used, it is imperative to store theSmart Card in a safe location after the cryptographic functions ofthe switch have been enabled. The Smart Card must be reinsertedin the reader (see Figure 41 and Figure 43) each time the switchis rebooted or power cycled to enable the cryptographic capabilitiesof the switch.<strong>Brocade</strong> Encryption SwitchThe <strong>Brocade</strong> Encryption Switch is the standalone version of the hardwareencryption device for data-at-rest. It offers the following features:• 32 x 8 Gbps FC ports• Three redundant fan modules• Two redundant power supplies• USB port• One RJ-45 GbE management port174 Securing Fibre Channel Fabrics

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!