Support, maybe. TSM supports 3592 drive encryption. It's important to
make sure you have some way, external to TSM, to store the keys so you can
get at the tapes in a recovery scenario.
AES encryption from the API should work fine, though I'm not sure you have
a way of initially encrypting the key. I think the server can generate
and manage the keys for you, but I've not gotten that to work on baclient,
let alone API.
On Thu, 22 Mar 2007, Allen S. Rout wrote:
Date: Thu, 22 Mar 2007 15:14:29 -0400
From: Allen S. Rout <asr AT UFL DOT EDU>
Reply-To: "ADSM: Dist Stor Manager" <ADSM-L AT VM.MARIST DOT EDU>
To: ADSM-L AT VM.MARIST DOT EDU
Subject: Re: TDPO and encryption
On Thu, 22 Mar 2007 10:24:32 +0100, Hans Christian Riksheim <HCR AT STERIA DOT
does anyone have any experience with rman/tdpo and encryption?
The last docs I saw about it, when distilled down, said "It might
work. If it doesn't, then it's not supported.".
Underwhelming, but I understand that much of the API workflow is just
plain different than the B/A client flow.
- Allen S. Rout