346 lines
14 KiB
HTML
346 lines
14 KiB
HTML
|
<?xml version="1.0" encoding="UTF-8"?>
|
||
|
<!DOCTYPE html
|
||
|
PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
|
||
|
<html lang="en-us" xml:lang="en-us">
|
||
|
<head>
|
||
|
<meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
|
||
|
<meta name="security" content="public" />
|
||
|
<meta name="Robots" content="index,follow" />
|
||
|
<meta http-equiv="PICS-Label" content='(PICS-1.1 "http://www.icra.org/ratingsv02.html" l gen true r (cz 1 lz 1 nz 1 oz 1 vz 1) "http://www.rsac.org/ratingsv01.html" l gen true r (n 0 s 0 v 0 l 0) "http://www.classify.org/safesurf/" l gen true r (SS~~000 1))' />
|
||
|
<meta name="DC.Type" content="task" />
|
||
|
<meta name="DC.Title" content="Use the Hardware Service Manager" />
|
||
|
<meta name="abstract" content="Hardware service manager is a tool for displaying and working with system hardware from both a logical and a packaging viewpoint, an aid for debugging Input/Output (I/O) processors and devices, and is also used to reinitialize the Cryptographic Coprocessor (set it back to an un-initialized state)." />
|
||
|
<meta name="description" content="Hardware service manager is a tool for displaying and working with system hardware from both a logical and a packaging viewpoint, an aid for debugging Input/Output (I/O) processors and devices, and is also used to reinitialize the Cryptographic Coprocessor (set it back to an un-initialized state)." />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzajctroubleshooting.htm" />
|
||
|
<meta name="DC.Relation" scheme="URI" content="rzajcreinitializing.htm" />
|
||
|
<meta name="copyright" content="(C) Copyright IBM Corporation 2006" />
|
||
|
<meta name="DC.Rights.Owner" content="(C) Copyright IBM Corporation 2006" />
|
||
|
<meta name="DC.Format" content="XHTML" />
|
||
|
<meta name="DC.Identifier" content="rzajchardware" />
|
||
|
<meta name="DC.Language" content="en-us" />
|
||
|
<!-- All rights reserved. Licensed Materials Property of IBM -->
|
||
|
<!-- US Government Users Restricted Rights -->
|
||
|
<!-- Use, duplication or disclosure restricted by -->
|
||
|
<!-- GSA ADP Schedule Contract with IBM Corp. -->
|
||
|
<link rel="stylesheet" type="text/css" href="./ibmdita.css" />
|
||
|
<link rel="stylesheet" type="text/css" href="./ic.css" />
|
||
|
<title>Use the Hardware Service Manager</title>
|
||
|
</head>
|
||
|
<body id="rzajchardware"><a name="rzajchardware"><!-- --></a>
|
||
|
<!-- Java sync-link --><script language="Javascript" src="../rzahg/synch.js" type="text/javascript"></script>
|
||
|
<h1 class="topictitle1">Use the Hardware Service Manager</h1>
|
||
|
<div><p>Hardware service manager is a tool for displaying and working with
|
||
|
system hardware from both a logical and a packaging viewpoint, an aid for
|
||
|
debugging Input/Output (I/O) processors and devices, and is also used to reinitialize
|
||
|
the Cryptographic Coprocessor (set it back to an un-initialized state).</p>
|
||
|
<div class="section"><p>When the Cryptographic Coprocessor is re-initialized, the Cryptographic
|
||
|
Coprocessor Licensed Internal Code is reloaded into the Coprocessor. Some
|
||
|
but not all program temporary fixes (PTFs) for the Coprocessor licensed internal
|
||
|
code may require the use of hardware service manager to activate them. This
|
||
|
extra step is included to allow you to prepare for recovery because reloading
|
||
|
certain segments of the licensed internal code will cause any configuration
|
||
|
data including master keys, retained RSA private keys, roles, and profiles
|
||
|
to be lost.</p>
|
||
|
<p>There may be situations where the Cryptographic Coprocessor
|
||
|
must be reset back to an unintialized state. For example, if the Coprocessor
|
||
|
is not configured correctly, there could be a scenario where the Coprocessor
|
||
|
cannot perform any useful function and cannot be corrected using
|
||
|
the Cryptographic Coprocessor configuration utility or a user-written application.
|
||
|
Another example is if the passwords for the administrative profiles are forgotten
|
||
|
and no other profile uses a role that is authorized to change passwords.</p>
|
||
|
<p>Hardware
|
||
|
service manager is found in System Service Tools. To use the Hardware service
|
||
|
manager, proceed as follows:</p>
|
||
|
</div>
|
||
|
<ol><li class="stepexpand"><span>Use the Start System Service Tools (STRSST) CL command by typing <kbd class="userinput">STRSST</kbd> at
|
||
|
the CL command line and pressing enter.</span> The System Service
|
||
|
Tools Signon display should be shown. <pre class="screen"> <strong>Start Service Tools (STRSST) Sign On</strong>
|
||
|
|
||
|
SYSTEM: RCHSYS01
|
||
|
Type choice, press Enter.
|
||
|
|
||
|
Service tools user . . . . . ________
|
||
|
Service tools password . . . ________
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
F3=Exit F9=Change Password F12=Cancel</pre>
|
||
|
</li>
|
||
|
<li class="stepexpand"><span>Enter the service tools user profile name and password.</span> The
|
||
|
System Service Tools display should appear.<pre class="screen"> <strong>System Service Tools (SST)</strong>
|
||
|
|
||
|
Select one of the following:
|
||
|
|
||
|
1. Start a service tool
|
||
|
2. Work with active service tools
|
||
|
3. Work with disk units
|
||
|
4. Work with diskette data recovery
|
||
|
5. Work with system partitions
|
||
|
6. Work with system capacity
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
Selection
|
||
|
<u>1</u>
|
||
|
|
||
|
F3=Exit F10=Command entry F12=Cancel</pre>
|
||
|
</li>
|
||
|
<li class="stepexpand"><span>Select <span class="uicontrol">1</span> to start a service tool and press
|
||
|
Enter.</span> The Start a Service Tool display will be shown.<pre class="screen"> <strong>Start a Service Tool</strong>
|
||
|
|
||
|
Warning: Incorrect use of this service tool can cause damage
|
||
|
to data in this system. Contact your service representative
|
||
|
for assistance.
|
||
|
|
||
|
Select one of the following:
|
||
|
|
||
|
1. Product activity log
|
||
|
2. Trace Licensed Internal Code
|
||
|
3. Work with communications trace
|
||
|
4. Display/Alter/Dump
|
||
|
5. Licensed Internal Code log
|
||
|
6. Main storage dump manager
|
||
|
7. Hardware service manager
|
||
|
|
||
|
|
||
|
|
||
|
Selection
|
||
|
<u>7</u>
|
||
|
|
||
|
F3=Exit F12=Cancel F16=SST menu</pre>
|
||
|
</li>
|
||
|
<li class="stepexpand"><span>Select <span class="uicontrol">7</span> to start Hardware Service Manager.</span> The Hardware Service Manager screen will be displayed showing
|
||
|
the menu of available options.<pre class="screen"> <strong>Hardware Service Manager</strong>
|
||
|
|
||
|
Attention: This utility is provided for service representative use only.
|
||
|
|
||
|
System unit . . . . . . . : 9406-270 10-4314M
|
||
|
Release . . . . . . . . . : V5R1M0 (1)
|
||
|
|
||
|
Select one of the following:
|
||
|
|
||
|
1. Packaging hardware resources (systems, frames, cards,...)
|
||
|
2. Logical hardware resources (buses, IOPs, controllers,...)
|
||
|
3. Locate resource by resource name
|
||
|
4. Failed and non-reporting hardware resources
|
||
|
5. System power control network (SPCN)
|
||
|
6. Work with service action log
|
||
|
7. Display label location work sheet
|
||
|
8. Device Concurrent Maintenance
|
||
|
|
||
|
Selection
|
||
|
<u>2</u>
|
||
|
|
||
|
F3=Exit F6=Print configuration F9=Display card gap information
|
||
|
F10=Display resources requiring attention F12=Cancel</pre>
|
||
|
</li>
|
||
|
<li class="stepexpand"><span>Select <span class="uicontrol">2</span> to work with logical hardware resources.</span> <pre class="screen"> <strong>Logical Hardware Resources</strong>
|
||
|
|
||
|
Select one of the following:
|
||
|
|
||
|
1. System bus resources
|
||
|
2. Processor resources
|
||
|
3. Main storage resources
|
||
|
4. High-speed link resources
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
Selection
|
||
|
<u>1</u>
|
||
|
|
||
|
F3=Exit F6=Print configuration F12=Cancel </pre>
|
||
|
</li>
|
||
|
<li class="stepexpand"><span>From the Logical Hardware Resources screen, select <span class="uicontrol">1</span> to
|
||
|
show system bus resources.</span> <pre class="screen"> <strong>Logical Hardware Resources on System Bus</strong>
|
||
|
|
||
|
System bus(es) to work with . . . . . . *ALL *ALL, *SPD, *PCI, 1-511
|
||
|
Subset by . . . . . . . . . . . . . . . *CRP *ALL, *STG, *WS, *CMN, *CRP
|
||
|
|
||
|
Type options, press Enter.
|
||
|
2=Change detail 4=Remove 5=Display detail 6=I/O Debug
|
||
|
8=Associated packaging resource(s) 9=Resources associated with IOP
|
||
|
|
||
|
<strong>Resource
|
||
|
Opt Description Type-Model Status Name</strong>
|
||
|
_ HSL I/O Bridge 2249- Operational BC02
|
||
|
_ Bus Expansion Adapter - Operational BCC02
|
||
|
_ System Bus 2249- Operational LB01
|
||
|
_ Multi-Adapter Bridge 2249- Operational PCI01D
|
||
|
_ Combined Function IOP * < 284D-001 Operational CMB01
|
||
|
_ HSL I/O Bridge 283B- Operational BC01
|
||
|
_ Bus Expansion Adapter - Operational BCC03
|
||
|
More...
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
F3=Exit F5=Refresh F6=Print F8=Include non-reporting resources
|
||
|
F9=Failed resources F10=Non-reporting resources
|
||
|
F11=Display serial/part numbers F12=Cancel</pre>
|
||
|
</li>
|
||
|
<li class="stepexpand"><span>If you know which IOP contains the Cryptographic Coprocessor, type <span class="uicontrol">9</span> next
|
||
|
to the IOP. Otherwise, subset the list by typing <kbd class="userinput">*CRP</kbd> for
|
||
|
<span class="uicontrol">Subset by</span> field and then type <span class="uicontrol">9</span> next
|
||
|
to the IOP containing the Cryptographic Coprocessor. </span> You
|
||
|
should then see the Logical Hardware Resources Associated with IOP display.<pre class="screen"> <strong>Logical Hardware Resources Associated with IOP</strong>
|
||
|
|
||
|
|
||
|
Type options, press enter.
|
||
|
2=Change detail 4=Remove 5=Display detail 6=I/O Debug
|
||
|
7=Verify 8=Associated packaging resource(s)
|
||
|
|
||
|
<strong>Resource
|
||
|
Opt Description Type-Model Status Name</strong>
|
||
|
_ Combined function IOP * < 284D-001 Operational CMB01
|
||
|
_ Cryptography Adapter 4758-023 Operational CRPCTL01
|
||
|
<u>6</u> Cryptography Device 4758-023 Operational CRP01
|
||
|
_ Workstation IOA 2746-001 Operational CTL01
|
||
|
_ Display Station 3477-0FC Operational DSP001
|
||
|
_ Display Station 3477-0FC Operational DSP002
|
||
|
_ Communications IOA 2745-001 Operational LIN01
|
||
|
_ Communications Port 2745-001 Operational CMN01
|
||
|
_ Communications Port 2745-001 Operational CMN02
|
||
|
_ Communications IOA 2744-001 Operational LIN03
|
||
|
_ Communications Port 2744-001 Operational CMN03
|
||
|
More...
|
||
|
F3=Exit F5=Refresh F6=Print F8=Include non-reporting resources
|
||
|
F9=Failed resources F10=Non-reporting resources
|
||
|
F11=Display serial/part numbers F12=Cancel </pre>
|
||
|
</li>
|
||
|
<li class="stepexpand"><span>Type <span class="uicontrol">6</span> next to the cryptography device that
|
||
|
you want to reinitialize, and then press Enter.</span> <pre class="screen"> <strong>Select Cryptography Debug Function</strong>
|
||
|
|
||
|
Select one of the following:
|
||
|
|
||
|
1. Reinitialize Flash Memory
|
||
|
2. Select IOP Debug Function
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
Selection
|
||
|
<u>1</u>
|
||
|
|
||
|
F3=Exit F12=Cancel </pre>
|
||
|
</li>
|
||
|
<li class="stepexpand"><span>Select <span class="uicontrol">1</span> to reinitialize flash memory (reload
|
||
|
the Cryptographic Coprocessor Licensed Internal Code). A confirmation screen
|
||
|
will be displayed. If you are applying a PTF ensure that you have taken the
|
||
|
necessary precautions regarding your encrypted data and keys, and have a backup
|
||
|
of the master key. Press Enter to continue.</span> <pre class="screen"> <strong>Reinitialize Flash Memory Function</strong>
|
||
|
|
||
|
<strong>DANGER:
|
||
|
|
||
|
Performing this initialization of the flash memory on the cryptography
|
||
|
device will cause ALL key information stored on the device to be
|
||
|
DESTROYED. This will cause all data encrypted using this device to be
|
||
|
rendered unusable.
|
||
|
|
||
|
|
||
|
WARNING:
|
||
|
|
||
|
Performing this initialization of the flash memory on the cryptography
|
||
|
device will take an estimated 10 minutes.</strong>
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
Press Enter to proceed.
|
||
|
|
||
|
F3=Exit F12=Cancel</pre>
|
||
|
</li>
|
||
|
</ol>
|
||
|
<div class="section"><p>The following screen showing status of the reinitialization will
|
||
|
be displayed and updated until reinitialization is complete.</p>
|
||
|
<pre class="screen"> <strong>Reinitialize Flash Memory Status</strong>
|
||
|
|
||
|
|
||
|
|
||
|
Flash memory reinitialization in progress...
|
||
|
|
||
|
|
||
|
Estimated time: 10.0 minutes
|
||
|
|
||
|
Elapsed time: 2.5 minutes
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
</pre>
|
||
|
<p>When reinitialization is complete, a message will be displayed.</p>
|
||
|
<pre class="screen"> <strong>Select Cryptography Debug Function</strong>
|
||
|
|
||
|
Select one of the following:
|
||
|
|
||
|
1. Reinitialize Flash Memory
|
||
|
2. Select IOP Debug Function
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
|
||
|
Selection
|
||
|
_
|
||
|
|
||
|
F3=Exit F12=Cancel
|
||
|
<strong>Reinitialization of cryptography device was successful.</strong></pre>
|
||
|
</div>
|
||
|
<div class="section"><p>After reinitialization is complete, exit all the way out of system
|
||
|
service tools by pressing function key F3 on each screen as necessary. </p>
|
||
|
</div>
|
||
|
</div>
|
||
|
<div>
|
||
|
<div class="familylinks">
|
||
|
<div class="parentlink"><strong>Parent topic:</strong> <a href="rzajctroubleshooting.htm" title="Use these troubleshooting methods to tackle some of the basic problems that may occur with your Cryptographic Coprocessor. If the troubleshooting information does not address your problem, contact your service representative.">Troubleshoot the Cryptographic Coprocessor</a></div>
|
||
|
</div>
|
||
|
<div class="relconcepts"><strong>Related concepts</strong><br />
|
||
|
<div><a href="rzajcreinitializing.htm" title="If you set up your Cryptographic Coprocessor incorrectly, you can end up with an unusable configuration with which you cannot perform any cryptographic functions and cannot use any of the APIs to recover. For example, you can configure it such that you have no role authorized to set the master key and no role authorized to change or create new roles or profiles. You can call the hardware command for reinitializing the card by using the Cryptographic_Facility_Control (CSUACFC) SAPI.">Reinitialize the Cryptographic Coprocessor</a></div>
|
||
|
</div>
|
||
|
</div>
|
||
|
</body>
|
||
|
</html>
|