Changing the key management mode

The key management mode can be changed between local and remote key management. Encrypted HPE Persistent Memory modules remain encrypted, but the passwords and the storage of those passwords change, based on the key management mode selected.
IMPORTANT:

Be sure to observe all pop-up messages displayed in UEFI System Utilities that pertain to persistent memory. Failure to follow the instructions in these messages might cause persistent memory data loss.

Procedure
  1. From the System Utilities screen, select System Configuration > BIOS/Platform Configuration (RBSU) > Server Security > Device Encryption Options.
  2. Change the Key Management setting to one of the following:
    • Local—Enables local key management. The password used for encryption is stored locally on the server.

      HPE TPM 2.0 must be installed to view and select this setting.

    • Remote—Enables remote key management. The password used for encryption is stored on a remote key server.

      HPE iLO must be enrolled in and connected to a key manager to view and select this setting.

  3. Press the F12 key to save and exit.
  4. Reboot the server.