Encryption Algorithm Suite
This chapter describes the TLS encryption algorithm suite supported by OceanStor Dorado V6 series storage systems.
The encryption algorithm suite defines a series of security mechanisms to ensure the security of TLS communication.
Key exchange algorithm: Defines how keys, which are used for data encryption, are transmitted between clients and servers. For example, RSA keys.
Authentication method: Defines how a host authenticates a remote host. For example, RSA certificate or no authentication.
Encryption algorithm: Defines how to encrypt data. For example, AES (256-bit or 128-bit).
Hash algorithm: Provides a method for checking whether data has been changed to ensure data integrity. For example, SHA-1.

Data Security Features
Service data is core values of enterprises. Ensuring data security has become a focus concerned by enterprise administrators. In addition to security deployment and security maintenance, the OceanStor Dorado V6 series storage system also provides other features to ensure data security.
Disk Encryption
The OceanStor Dorado V6 series storage system supports disk encryption. The hardware circuits and internal Data Encrypt Key of disks are used for data writing encryption and data reading decryption.
To ensure the security of Data Encrypt Key, OceanStor Dorado V6 series storage system provides a highly secure, reliable, and available key management solution:
Internal key management: uses the storage system's internal keys to encrypt data.

https://support.huawei.com/enterprise/en/doc/EDOC1100112642/fcc5103c/encryption-algorithm-suite
https://support.huawei.com/enterprise/en/doc/EDOC1100112642