Drive Locking Key Migration Across KMS Without Data Loss
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Migrating between different key management servers (KMS) in information handling systems often results in data loss and disruption due to the need for data backups and migrations, especially when changing KMS vendors.
Innovation Solution
A method involving a baseboard management controller (BMC) and vendor fabric controller that enables seamless migration of security encryption keys between KMS systems by transitioning from local key management to external key management, allowing for continuous encryption key generation and management without data loss.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If data backups and migrations are performed when changing KMS vendors, then data can be preserved, but operational disruption and time loss occur
Solution Approach 1:
The system performs preliminary actions by establishing a second KMS connection and generating migration keys before actually migrating data. The BMC proactively configures the system to accept keys from a new KMS while maintaining the old connection, allowing seamless transition without data loss or operational disruption.
Solution Approach 2:
The BMC acts as an intermediary between the storage device and KMS systems during migration. It manages multiple KMS connections simultaneously, orchestrating the key migration process and ensuring continuous data protection throughout the transition from the first KMS to the second KMS.
2Ease of operation
If local key management is used, then operational autonomy is improved, but security and management complexity worsen
Solution Approach 1:
The BMC provides self-service capabilities by automatically managing encryption keys through external KMS. The system can autonomously request, receive, and manage encryption keys from external KMS services without manual intervention, combining operational simplicity with enhanced security management.
3Reliability
If external key management services are used, then security is enhanced, but dependency on external services increases
Solution Approach 1:
The BMC is designed with multi-functionality to work with multiple KMS vendors and services. It can manage encryption keys from different external KMS providers through a unified interface, reducing the impact of vendor-specific complexities and providing flexibility in external service dependencies.
Data Source
AI summary
An information handling system includes a BMC configurable in a first mode to provide external encryption keys for transactions with a storage device from external key management services, and in a second mode to generate local encryption keys for the transactions. At a first time, the BMC is configured in the first mode to provide external encryption keys for the transactions from a first external key management service. At a second time subsequent to the first time, the BMC is configured in the second mode to generate local encryption keys for the transactions. At a third time subsequent to the second time, the BMC is configured in the first mode to provide second external encryption keys for the transactions from a second external key management service. After the third time, no user data is lost on the first storage device as compared with a time prior to the first time.


