<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Onboard Key Manager  onboard sync question in ONTAP Discussions</title>
    <link>https://community.netapp.com/t5/ONTAP-Discussions/Onboard-Key-Manager-onboard-sync-question/m-p/156521#M35339</link>
    <description>&lt;P&gt;I'm using the following command to check key status&lt;/P&gt;
&lt;P&gt;security key-manager key query -node&amp;nbsp;&lt;EM&gt;node&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Then using the following&lt;/P&gt;
&lt;P&gt;security key-manager onboard sync&lt;/P&gt;
&lt;P&gt;This then prompts me for the cluster-wide passphrase.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If I check the key status again later it still reports keys needed to be restored?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;</description>
    <pubDate>Wed, 27 May 2020 12:31:07 GMT</pubDate>
    <dc:creator>WAYNEWATKINS</dc:creator>
    <dc:date>2020-05-27T12:31:07Z</dc:date>
    <item>
      <title>Onboard Key Manager  onboard sync question</title>
      <link>https://community.netapp.com/t5/ONTAP-Discussions/Onboard-Key-Manager-onboard-sync-question/m-p/156517#M35336</link>
      <description>&lt;P&gt;ONTAP version 9.6P7 - Using Onboard KMS for Aggregate Level Encryption -&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;When I query the KMS using the security key-manager key query command it reports back some keys as False under restored on just one of the nodes (2-node cluster). It then tells me to use the security key-manager onboard sync command to restore a key(s).&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I've ran the sync command a couple of times and nothing appears to happen? It still displays False keys?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The only volume I have at the moment is an SVM root volume which was encrypted at creation time in a data aggregate fine.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Has anyone else seen the sync command work before?&amp;nbsp;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 04 Jun 2025 11:08:07 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Discussions/Onboard-Key-Manager-onboard-sync-question/m-p/156517#M35336</guid>
      <dc:creator>WAYNEWATKINS</dc:creator>
      <dc:date>2025-06-04T11:08:07Z</dc:date>
    </item>
    <item>
      <title>Re: Onboard Key Manager  onboard sync question</title>
      <link>https://community.netapp.com/t5/ONTAP-Discussions/Onboard-Key-Manager-onboard-sync-question/m-p/156520#M35338</link>
      <description>&lt;P&gt;Please provide the exact commands!&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The commands were modified/deprecated into ONTAP 9.7. For using the onboard key-manager, you should be using the:&lt;/P&gt;
&lt;PRE class="pre screen" space="preserve"&gt;security key-manager onboard &lt;/PRE&gt;
&lt;P&gt;Command sets. Specifically:&lt;/P&gt;
&lt;PRE class="pre screen" space="preserve"&gt;security key-manager onboard sync&lt;/PRE&gt;
&lt;P&gt;&amp;nbsp;I know there was/is a bug when NOT using the "onboard" commands.&lt;/P&gt;</description>
      <pubDate>Wed, 27 May 2020 12:22:40 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Discussions/Onboard-Key-Manager-onboard-sync-question/m-p/156520#M35338</guid>
      <dc:creator>TMACMD</dc:creator>
      <dc:date>2020-05-27T12:22:40Z</dc:date>
    </item>
    <item>
      <title>Re: Onboard Key Manager  onboard sync question</title>
      <link>https://community.netapp.com/t5/ONTAP-Discussions/Onboard-Key-Manager-onboard-sync-question/m-p/156521#M35339</link>
      <description>&lt;P&gt;I'm using the following command to check key status&lt;/P&gt;
&lt;P&gt;security key-manager key query -node&amp;nbsp;&lt;EM&gt;node&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Then using the following&lt;/P&gt;
&lt;P&gt;security key-manager onboard sync&lt;/P&gt;
&lt;P&gt;This then prompts me for the cluster-wide passphrase.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If I check the key status again later it still reports keys needed to be restored?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Wed, 27 May 2020 12:31:07 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Discussions/Onboard-Key-Manager-onboard-sync-question/m-p/156521#M35339</guid>
      <dc:creator>WAYNEWATKINS</dc:creator>
      <dc:date>2020-05-27T12:31:07Z</dc:date>
    </item>
    <item>
      <title>Re: Onboard Key Manager  onboard sync question</title>
      <link>https://community.netapp.com/t5/ONTAP-Discussions/Onboard-Key-Manager-onboard-sync-question/m-p/156524#M35342</link>
      <description>&lt;P&gt;Yeah...I think you are seeing the bug I was talking about (Fixed in 9.7 at least, maybe a 9.6P but not sure)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;It might be this one.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://mysupport.netapp.com/NOW/cgi-bin/bol?Type=Detail&amp;amp;Display=1259828" target="_blank"&gt;https://mysupport.netapp.com/NOW/cgi-bin/bol?Type=Detail&amp;amp;Display=1259828&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;(although it says fixed in 9.6P7)&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Once you upgrade to ONTAP 9.7, this should be fully resolved. I have seen this before. It is a display bug. You could open a case with NetApp Support so they may track it.&lt;/P&gt;</description>
      <pubDate>Wed, 27 May 2020 12:59:59 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Discussions/Onboard-Key-Manager-onboard-sync-question/m-p/156524#M35342</guid>
      <dc:creator>TMACMD</dc:creator>
      <dc:date>2020-05-27T12:59:59Z</dc:date>
    </item>
    <item>
      <title>Re: Onboard Key Manager  onboard sync question</title>
      <link>https://community.netapp.com/t5/ONTAP-Discussions/Onboard-Key-Manager-onboard-sync-question/m-p/156527#M35344</link>
      <description>&lt;P&gt;I did hit that bug so I upgraded to 9.6P7 which stopped the&amp;nbsp;&lt;SPAN&gt;"Loop detected in next()" messages.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;Now, I am seeing this new issue?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;May be it will go away if upgraded 9.7? I'm a bit reluctant to go to 9.7 at the moment as we have seen a performance issue after recently upgrading to 9.7 which is under investigation.&lt;/P&gt;
&lt;P&gt;Thank you.&lt;/P&gt;</description>
      <pubDate>Wed, 27 May 2020 13:51:18 GMT</pubDate>
      <guid>https://community.netapp.com/t5/ONTAP-Discussions/Onboard-Key-Manager-onboard-sync-question/m-p/156527#M35344</guid>
      <dc:creator>WAYNEWATKINS</dc:creator>
      <dc:date>2020-05-27T13:51:18Z</dc:date>
    </item>
  </channel>
</rss>

