
Figure 1.
TheBrocadeEncryptionSwitchplaysa
vitalroleintheBrocadeOnearchitecture.
tapestoragesecurityaswellaskey
management,andsupportsheterogeneous
storageenvironments.Deploymentissimple
andnon-disruptive:Organizationscan
encryptdatafromanyswitchportwithout
reconguringthefabric.
Inaddition,organizationscanimplement
provisioningwithoutshuttingdown
applicationsorchangingtheLogicalUnit
Number(LUN)mappingandLUNmasking
congurationsonthetargetstoragearrays.
TheBrocadeEncryptionSwitchismanaged
andconguredusingfamiliarBrocadeData
CenterFabricManager(DCFM
®
)andCLI
managementtools,andiseasilyintegrated
intoexistingnetworkinfrastructures.
KeyadvantagesoftheBrocadeEncryption
Switchinclude:
•Theabilitytoencryptdataatwirespeed
•Centralmanagementofstorageand
fabric-basedsecurityresources
•Concurrentsupportforbothdiskand
tapeencryptionoperationsfroma
singledevice
•Transparent,onlineencryptionof
“cleartext”LUNsandrekeyingof
encryptedLUNswithoutdisruption
•Datacompressionandintegrity
authenticationfortapebackup
•Simplied,non-disruptiveinstallation
andconguration
HIGH-VALUE APPLICATIONS AND
SOLUTION AREAS
Twoofthegreatestbusinessbenetsofthe
BrocadeEncryptionSwitchareincreased
productivityandreducedriskofdata
exposure.Otherkeybenetsinclude
improvedbackupperformancewhile
deployingencryption/compressionand
investmentprotectionforexistingresources.
TheBrocadeEncryptionSwitchisidealfor
applicationssuchas:
•HighlysensitiveITapplicationswith
securedata-at-restrequirements
•Securedatabackupsforoffsitediskand
tapestorageandlong-termarchiving
•Supportforheterogeneousdisk
andtapestorageenvironments
fromasingledevicewithcentralized
management
•Decommissioningofdiskarraysthat
requirelegalvalidationofthelogical
destructionanddatashreddingofdevices
(theBrocadeEncryptionSwitchhelps
decommissiondevicesbyencryptingan
entireLUNanddestroyingthedata
encryptionkey)
•SecurereplicationofVirtualTapeLibrary
(VTL)backupstoremotefacilities
SAN
Client/Server
Emerging
Protocols
(FCoE)
Brocade Data
Center Fabric
Extended Data
Center Fabric
Disaster
Recovery Site
Continuous
Remote
Replication
Key Management
Brocade
Encryption
Switch
Branch
Office
Virtual and
Standalone
Servers
Virtual and
Standalone
Servers
Storage
Brocade
Encryption
Switch
Brocade DCX
Backbone
Encryption
Directors
Switches
1
Brocade M-EOS fabrics are McDATA switches and
directors running McDATA Enterprise OS in McDATA
Fabric mode or McDATA Open Fabric mode.
Thestoragefabricenablescentralized
managementtosupportnearlyevery
aspectofthedatacenter,fromserver
environmentsandworkstationstoedge
computingandbackupenvironments.Asa
result,itisanidealplacetostandardizeand
consolidateaholisticdata-at-restsecurity
strategy.Organizationscanalsoimplement
thistypeofbest-practicemethodologyin
otherpartsofthedatacenter,helpingto
protectdatathroughouttheenterprise.
Mostcurrentindustrysolutionsinclude
eitherhost-basedsoftwareencryption,
device-embeddedencryption,oredge
encryption—allofwhichprovideisolated
servicestospecicapplicationsbuttypically
cannotscaleacrossextendedenterprise
storageenvironments.Incontrast,Brocade
deliversfabric-basedencryptionforboth
disk-andtape-basedstoragedevicesas
partoftheindustry-leadingBrocadeOne
™
architectureandinnovativeBrocade
AdaptiveNetworkingservices(seeFigure1).
Basedonindustrystandards,Brocade
encryptionfordata-at-restprovidescentralized,
scalableencryptionandcompressionservices
thatseamlesslyintegrateintoexisting
BrocadeFabricOS
®
(FOS)andBrocade
M-EnterpriseOS(M-EOS)environments
1
.
TheBrocadefabric-basedapproachtodata
encryptionscalestomeetperformance
requirements,providesacentralized
pointofmanagementforbothdiskand
Comentarios a estos manuales