10.4 Controller Level Operation on Self Encrypting Drives (SEDs)
To display the SED operations:
- In the Enterprise View, select the controller node.
- On the ribbon, in the Physical Device group,
click Set Properties.
The Set Properties window opens.
- Click the SED Operations tab and perform the following actions:
- Take SED Ownership: This option takes the ownership of all the SEDs. Once the check box is selected, the table gets updated with the list of valid SEDs, which are in OFS. Select the SEDs to take ownership. If all SEDs are not in OFS then, Take SED Ownership check box is disabled. After having the ownership, all the selected SEDs have a property called Ownership Status as MCHP Owned and Original Factory State (OFS) is set as False. When the controller’s SED Encryption status is “Waiting on Controller Password”, the Take SED Ownership check box is disabled until controller password is provided.
- Revert To Original Factory State (OFS): This option deletes all the user’s data stored in the drive and resets to its factory state. At the controller level, Revert to OFS operation is only performed on the MCHP owned SEDs and the Physical Security ID (PSID) is not required for MCHP owned SEDs. Sometimes ownership status is “MCHP Owned, Foreign”, in this case, Revert to Original Factory State (OFS) operation is not allowed on the respective SED. When the controller’s SED Encryption status is “Waiting on Controller Password”, the Revert To Original Factory State (OFS) check box is disabled until controller password is provided . When controller’s SED Encryption status is “Waiting on Master Key”, the Revert To Original Factory State (OFS) check box is disabled until system is rebooted.
- Import Foreign Self Encrypting Drive (SED): An SED is said to be Foreign, when the SED is owned by MCHP and have different master key compared to its connected controller. This happens under the following circumstances, when:
- The SED has migrated from a different controller.
- The SED has been previously owned by the connected controller but was removed for a period. At that time, the connected controller’s master key has changed.
This operation converts the Foreign SED to MCHP Owned SED. Only Foreign SED whose Foreign Key matches with that SED will be properly imported. For others, this operation should be repeated with different Foreign Key until all the SEDs are imported. Import Foreign SED has one more text field as “Import Foreign Reset Key”. It is displayed only when this key is required based on the “Foreign Reset Key Identifier” property. If this property value is other than “Not Applicable”, this option gets displayed.