AFF and FAS System Documentation-4
AFF and FAS System Documentation-4
section.
6. From the LOADER prompt, enter the boot_ontap command.
If any interfaces are listed as "false", revert those interfaces back to their home port using the net int
revert command.
10. Move the console cable to the repaired controller and run the version -v command to check the ONTAP
versions.
11. Restore automatic giveback if you disabled it by using the storage failover modify -node local
-auto-giveback true command.
Once environment variables are checked, you must complete steps specific to systems
that have Onboard Key Manager (OKM), NetApp Storage Encryption (NSE) or NetApp
Volume Encryption (NVE) enabled.
1. Determine which section you should use to restore your OKM, NSE, or NVE configurations: If NSE or NVE
are enabled along with Onboard Key Manager you must restore settings you captured at the beginning of
this procedure.
◦ If NSE or NVE are enabled and Onboard Key Manager is enabled, go to Restore NVE or NSE when
Onboard Key Manager is enabled.
◦ If NSE or NVE are enabled for ONTAP 9.6, go to Restore NSE/NVE on systems running ONTAP 9.6
and later.
Steps
1. Connect the console cable to the target controller.
2. Use the boot_ontap command at the LOADER prompt to boot the controller.
3. Check the console output:
28
If the console displays… Then…
The LOADER prompt Boot the controller to the boot menu: boot_ontap menu
4. At the Boot Menu, enter the hidden command, recover_onboard_keymanager and reply y at the
prompt
5. Enter the passphrase for the onboard key manager you obtained from the customer at the beginning of this
procedure.
6. When prompted to enter the backup data, paste the backup data you captured at the beginning of this
procedure, when asked. Paste the output of security key-manager backup show OR security
key-manager onboard show-backup command
The data is output from either security key-manager backup show or security
key-manager onboard show-backup command.
--------------------------BEGIN BACKUP--------------------------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.
.
.
.
H4nPQM0nrDRYRa9SCv8AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAA
---------------------------END BACKUP---------------------------
8. Move the console cable to the partner controller and login as "admin".
29
9. Confirm the target controller is ready for giveback with the storage failover show command.
10. Giveback only the CFO aggregates with the storage failover giveback -fromnode local
-only-cfo-aggregates true command.
◦ If the command fails because of a failed disk, physically disengage the failed disk, but leave the disk in
the slot until a replacement is received.
◦ If the command fails because of an open CIFS sessions, check with customer how to close out CIFS
sessions.
◦ If the command fails because the partner "not ready", wait 5 minutes for the NVMEMs to synchronize.
◦ If the command fails because of an NDMP, SnapMirror, or SnapVault process, disable the process. See
the appropriate Documentation Center for more information.
11. Once the giveback completes, check the failover and giveback status with the storage failover show
and `storage failover show-giveback` commands.
Only the CFO aggregates (root aggregate and CFO style data aggregates) will be shown.
If the Restored column = anything other than yes/true, contact Customer Support.
16. At the clustershell prompt, enter the net int show -is-home false command to list the logical
interfaces that are not on their home controller and port.
If any interfaces are listed as false, revert those interfaces back to their home port using the net int
revert command.
17. Move the console cable to the target controller and run the version -v command to check the ONTAP
versions.
18. Restore automatic giveback if you disabled it by using the storage failover modify -node local
-auto-giveback true command.
30
Restore NSE/NVE on systems running ONTAP 9.6 and later
Steps
1. Connect the console cable to the target controller.
2. Use the boot_ontap command at the LOADER prompt to boot the controller.
3. Check the console output:
4. Move the console cable to the partner controller and give back the target controller storage using the
storage failover giveback -fromnode local -only-cfo-aggregates true local
command.
◦ If the command fails because of a failed disk, physically disengage the failed disk, but leave the disk in
the slot until a replacement is received.
◦ If the command fails because of an open CIFS sessions, check with customer how to close out CIFS
sessions.
◦ If the command fails because the partner "not ready", wait 5 minutes for the NVMEMs to synchronize.
◦ If the command fails because of an NDMP, SnapMirror, or SnapVault process, disable the process. See
the appropriate Documentation Center for more information.
5. Wait 3 minutes and check the failover status with the storage failover show command.
6. At the clustershell prompt, enter the net int show -is-home false command to list the logical
interfaces that are not on their home controller and port.
If any interfaces are listed as false, revert those interfaces back to their home port using the net int
revert command.
7. Move the console cable to the target controller and run the version -v command to check the ONTAP
versions.
8. Restore automatic giveback if you disabled it by using the storage failover modify -node local
-auto-giveback true command.
9. Use the storage encryption disk show at the clustershell prompt, to review the output.
10. Use the security key-manager key query command to display the key IDs of the authentication
keys that are stored on the key management servers.
◦ If the Restored column = yes/true, you are done and can proceed to complete the replacement
process.
31
◦ If the Key Manager type = external and the Restored column = anything other than yes/true,
use the security key-manager external restore command to restore the key IDs of the
authentication keys.
◦ If the Key Manager type = onboard and the Restored column = anything other than yes/true,
use the security key-manager onboard sync command to re-sync the Key Manager type.
Use the security key-manager key query command to verify that the Restored column =
yes/true for all authentication keys.
Return the failed part to NetApp, as described in the RMA instructions shipped with the
kit. See the Part Return & Replacements page for further information.
Chassis
To replace the chassis, you must move the power supplies, hard drives, and controller
module or modules from the impaired chassis to the new chassis, and swap out the
impaired chassis from the equipment rack or system cabinet with the new chassis of the
same model as the impaired chassis.
All other components in the system must be functioning properly; if not, you must contact technical support.
• You can use this procedure with all versions of ONTAP supported by your system.
• This procedure is written with the assumption that you are moving all drives and controller module or
modules to the new chassis, and that the chassis is a new component from NetApp.
• This procedure is disruptive. For a two-node cluster, you will have a complete service outage and a partial
outage in a multi-node cluster.
You must shut down the controller or controller in the chassis prior to moving them to the
new chassis.
About this task
• If you have a cluster with more than two controllers, it must be in quorum. If the cluster is not in quorum or
a healthy controller shows false for eligibility and health, you must correct the issue before shutting down
the impaired controller; see Synchronize a node with the cluster.
• If AutoSupport is enabled, suppress automatic case creation by invoking an AutoSupport message:
32
system node autosupport invoke -node * -type all -message
MAINT=number_of_hours_downh
The following AutoSupport message suppresses automatic case creation for two hours: cluster1:*>
system node autosupport invoke -node * -type all -message MAINT=2h
Steps
1. If your system has two controller modules, disable the HA pair.
More than two controllers in the storage failover modify -node node0 -enabled false
cluster
2. Halt the controller, pressing y when you are prompted to confirm the halt: system node halt -node
node_name
You must perform a clean system shutdown before replacing the chassis to avoid losing
unwritten data in the nonvolatile memory (NVMEM/NVRAM). Depending on your system, if
the NVMEM/NVRAM LED is flashing, there is content in the NVMEM/NVRAM that has not
been saved to disk. You need to reboot the controller and start from the beginning of this
procedure. If repeated attempts to cleanly shut down the controller fail, be aware that you
might lose any data that was not saved to disk.
3. Where applicable, halt the second controller to avoid a possible quorum error message in an HA pair
configuration: system node halt -node second_node_name -ignore-quorum-warnings true
-skip-lif-migration-before-shutdown true
33
Move and replace hardware - AFF C190
Move the power supplies, hard drives, and controller module or modules from the
impaired chassis to the new chassis, and swap out the impaired chassis from the
equipment rack or system cabinet with the new chassis of the same model as the
impaired chassis.
Moving out a power supply when replacing a chassis involves turning off, disconnecting, and removing the
power supply from the old chassis and installing and connecting it on the replacement chassis.
When removing a power supply, always use two hands to support its weight.
The power supplies are keyed and can only be installed one way.
Do not use excessive force when sliding the power supply into the system. You can damage
the connector.
7. Close the cam handle so that the latch clicks into the locked position and the power supply is fully seated.
8. Reconnect the power cable and secure it to the power supply using the power cable locking mechanism.
To replace the chassis, you must remove the controller module or modules from the old chassis.
Leave the cables in the cable management device so that when you reinstall the cable management
device, the cables are organized.
3. Remove and set aside the cable management devices from the left and right sides of the controller module.
34
4. Squeeze the latch on the cam handle until it releases, open the cam handle fully to release the controller
module from the midplane, and then, using two hands, pull the controller module out of the chassis.
5. Set the controller module aside in a safe place, and repeat these steps if you have another controller
module in the chassis.
You need to move the drives from each bay opening in the old chassis to the same bay opening in the new
chassis.
The drive should disengage from the chassis, allowing it to slide free of the chassis.
When removing a drive, always use two hands to support its weight.
Drives are fragile. Handle them as little as possible to prevent damage to them.
3. Align the drive from the old chassis with the same bay opening in the new chassis.
35
4. Gently push the drive into the chassis as far as it will go.
5. Firmly push the drive the rest of the way into the chassis, and then lock the cam handle by pushing it up
and against the drive holder.
Be sure to close the cam handle slowly so that it aligns correctly with the front of the drive carrier. It clicks
when it is secure.
Step 4: Replace a chassis from within the equipment rack or system cabinet
You must remove the existing chassis from the equipment rack or system cabinet before you can install the
replacement chassis.
After you install the controller module and any other components into the new chassis, you need to boot it to a
state where you can run the interconnect diagnostic test.
For HA pairs with two controller modules in the same chassis, the sequence in which you install the controller
module is especially important because it attempts to reboot as soon as you completely seat it in the chassis.
1. Align the end of the controller module with the opening in the chassis, and then gently push the controller
module halfway into the system.
Do not completely insert the controller module in the chassis until instructed to do so.
2. Recable the console to the controller module, and then reconnect the management port.
3. Repeat the preceding steps if there is a second controller to install in the new chassis.
4. Complete the installation of the controller module
a. With the cam handle in the open position, firmly push the controller module in until it meets the
midplane and is fully seated, and then close the cam handle to the locked position.
Do not use excessive force when sliding the controller module into the chassis to avoid
damaging the connectors.
36
b. If you have not already done so, reinstall the cable management device.
c. Bind the cables to the cable management device with the hook and loop strap.
d. Repeat the preceding steps for the second controller module in the new chassis.
5. Connect the power supplies to different power sources, and then turn them on.
6. Boot each controller to Maintenance mode:
a. As each controller starts the booting, press Ctrl-C to interrupt the boot process when you see the
message Press Ctrl-C for Boot Menu.
If you miss the prompt and the controller modules boot to ONTAP, enter halt, and then
at the LOADER prompt enter boot_ontap, press Ctrl-C when prompted, and then
repeat this step.
b. From the boot menu, select the option for Maintenance mode.
You must verify the HA state of the chassis and run System-Level diagnostics.
You must verify the HA state of the chassis, and, if necessary, update the state to match your system
configuration.
1. In Maintenance mode, from either controller module, display the HA state of the local controller module and
chassis:
ha-config show
2. If the displayed system state for the chassis does not match your system configuration:
a. Set the HA state for the chassis:
▪ ha
▪ non-ha
b. Confirm that the setting has changed:
ha-config show
3. If you have not already done so, recable the rest of your system.
4. The next step depends on your system configuration.
37