<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Managing Storage Backends Using kubectl on Huawei</title><link>https://huawei.github.io/css-docs/en/docs/common-o-m-operations/managing-storage-backends-using-kubectl/</link><description>Recent content in Managing Storage Backends Using kubectl on Huawei</description><generator>Hugo</generator><language>en</language><copyright>Copyright © 2025 Huawei Technologies Co., Ltd. All rights reserved.</copyright><atom:link href="https://huawei.github.io/css-docs/en/docs/common-o-m-operations/managing-storage-backends-using-kubectl/index.xml" rel="self" type="application/rss+xml"/><item><title>Creating a Storage Backend</title><link>https://huawei.github.io/css-docs/en/docs/common-o-m-operations/managing-storage-backends-using-kubectl/creating-a-storage-backend/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://huawei.github.io/css-docs/en/docs/common-o-m-operations/managing-storage-backends-using-kubectl/creating-a-storage-backend/</guid><description>&lt;h2 id="section358111304711">Prerequisites&lt;/h2>
&lt;ul>
&lt;li>You have obtained the management IP address, username, and password of the storage device.&lt;/li>
&lt;li>You have obtained configuration information such as the storage pool name and storage protocol. For details about the configuration items, see section 
&lt;a href="https://huawei.github.io/css-docs/css-docs/en/docs/basic-services/storage-backend-management/configuring-the-storage-backend/">Configuring the Storage Backend&lt;/a>
.&lt;/li>
&lt;/ul>
&lt;h2 id="section557492184715">Procedure&lt;/h2>
&lt;ol>
&lt;li>
&lt;p>Prepare the secret configuration file, for example, &lt;strong>backend-secret.yaml&lt;/strong>. For details about the fields in the secret configuration file, see 
&lt;a href="#table19947114583113">Table 1&lt;/a>
.&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" style="color:#4c4f69;background-color:#eff1f5;-moz-tab-size:4;-o-tab-size:4;tab-size:4;">&lt;code class="language-yaml" data-lang="yaml">&lt;span style="display:flex;">&lt;span>&lt;span style="color:#8839ef">apiVersion&lt;/span>: v1
&lt;/span>&lt;/span>&lt;span style="display:flex;">&lt;span>&lt;span style="color:#8839ef">kind&lt;/span>: Secret
&lt;/span>&lt;/span>&lt;span style="display:flex;">&lt;span>&lt;span style="color:#8839ef">metadata&lt;/span>:
&lt;/span>&lt;/span>&lt;span style="display:flex;">&lt;span> &lt;span style="color:#8839ef">name&lt;/span>: backend-demo
&lt;/span>&lt;/span>&lt;span style="display:flex;">&lt;span> &lt;span style="color:#8839ef">namespace&lt;/span>: huawei-csi
&lt;/span>&lt;/span>&lt;span style="display:flex;">&lt;span>&lt;span style="color:#8839ef">type&lt;/span>: Opaque
&lt;/span>&lt;/span>&lt;span style="display:flex;">&lt;span>&lt;span style="color:#8839ef">stringData&lt;/span>:
&lt;/span>&lt;/span>&lt;span style="display:flex;">&lt;span> &lt;span style="color:#8839ef">user&lt;/span>: &lt;span style="color:#40a02b">&amp;#34;admin&amp;#34;&lt;/span>
&lt;/span>&lt;/span>&lt;span style="display:flex;">&lt;span> &lt;span style="color:#8839ef">password&lt;/span>: &lt;span style="color:#40a02b">&amp;#34;******&amp;#34;&lt;/span>
&lt;/span>&lt;/span>&lt;span style="display:flex;">&lt;span> &lt;span style="color:#8839ef">authenticationMode&lt;/span>: &lt;span style="color:#40a02b">&amp;#34;0&amp;#34;&lt;/span>
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>Create a secret.&lt;/p></description></item><item><title>Querying a Storage Backend</title><link>https://huawei.github.io/css-docs/en/docs/common-o-m-operations/managing-storage-backends-using-kubectl/querying-a-storage-backend-100/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://huawei.github.io/css-docs/en/docs/common-o-m-operations/managing-storage-backends-using-kubectl/querying-a-storage-backend-100/</guid><description>&lt;h2 id="section169128734716">Querying StorageBackendClaim&lt;/h2>
&lt;ol>
&lt;li>
&lt;p>Run the following command to query all storage backend claims in the default namespace:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" style="color:#4c4f69;background-color:#eff1f5;-moz-tab-size:4;-o-tab-size:4;tab-size:4;">&lt;code class="language-fallback" data-lang="fallback">&lt;span style="display:flex;">&lt;span>kubectl get sbc -n huawei-csi
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>The following is an example of the command output:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" style="color:#4c4f69;background-color:#eff1f5;-moz-tab-size:4;-o-tab-size:4;tab-size:4;">&lt;code class="language-fallback" data-lang="fallback">&lt;span style="display:flex;">&lt;span>NAME STORAGEBACKENDCONTENTNAME STATUS AGE
&lt;/span>&lt;/span>&lt;span style="display:flex;">&lt;span>backend-demo content-xxxxxxxxxxxx Bound 53d
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>Run the following command to view storage backend claims in YAML format:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" style="color:#4c4f69;background-color:#eff1f5;-moz-tab-size:4;-o-tab-size:4;tab-size:4;">&lt;code class="language-fallback" data-lang="fallback">&lt;span style="display:flex;">&lt;span>kubectl get sbc backend-demo -n huawei-csi -o yaml
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;/ol>
&lt;h2 id="section116041549115320">Querying StorageBackendContent&lt;/h2>
&lt;ol>
&lt;li>
&lt;p>Run the following command to query all storage backend instances:&lt;/p></description></item><item><title>Updating Storage Backend Authentication Information</title><link>https://huawei.github.io/css-docs/en/docs/common-o-m-operations/managing-storage-backends-using-kubectl/updating-storage-backend-authentication-information/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://huawei.github.io/css-docs/en/docs/common-o-m-operations/managing-storage-backends-using-kubectl/updating-storage-backend-authentication-information/</guid><description>&lt;p>To prevent the storage backend from becoming temporarily unavailable when the existing secret is modified directly, you are advised to update the authentication information by creating a new secret, replacing the reference to the existing secret, and then deleting the old secret.&lt;/p>
&lt;h2 id="section051012213157">Procedure&lt;/h2>
&lt;ol>
&lt;li>
&lt;p>Prepare a new secret configuration file, for example, &lt;strong>backend-secret-new.yaml&lt;/strong>.&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" style="color:#4c4f69;background-color:#eff1f5;-moz-tab-size:4;-o-tab-size:4;tab-size:4;">&lt;code class="language-yaml" data-lang="yaml">&lt;span style="display:flex;">&lt;span>&lt;span style="color:#8839ef">apiVersion&lt;/span>: v1
&lt;/span>&lt;/span>&lt;span style="display:flex;">&lt;span>&lt;span style="color:#8839ef">kind&lt;/span>: Secret
&lt;/span>&lt;/span>&lt;span style="display:flex;">&lt;span>&lt;span style="color:#8839ef">metadata&lt;/span>:
&lt;/span>&lt;/span>&lt;span style="display:flex;">&lt;span> &lt;span style="color:#8839ef">name&lt;/span>: backend-demo-new
&lt;/span>&lt;/span>&lt;span style="display:flex;">&lt;span> &lt;span style="color:#8839ef">namespace&lt;/span>: huawei-csi
&lt;/span>&lt;/span>&lt;span style="display:flex;">&lt;span>&lt;span style="color:#8839ef">type&lt;/span>: Opaque
&lt;/span>&lt;/span>&lt;span style="display:flex;">&lt;span>&lt;span style="color:#8839ef">stringData&lt;/span>:
&lt;/span>&lt;/span>&lt;span style="display:flex;">&lt;span> &lt;span style="color:#8839ef">user&lt;/span>: &lt;span style="color:#40a02b">&amp;#34;admin&amp;#34;&lt;/span>
&lt;/span>&lt;/span>&lt;span style="display:flex;">&lt;span> &lt;span style="color:#8839ef">password&lt;/span>: &lt;span style="color:#40a02b">&amp;#34;******&amp;#34;&lt;/span>
&lt;/span>&lt;/span>&lt;span style="display:flex;">&lt;span> &lt;span style="color:#8839ef">authenticationMode&lt;/span>: &lt;span style="color:#40a02b">&amp;#34;0&amp;#34;&lt;/span>
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>Create a secret.&lt;/p></description></item><item><title>Managing Storage Backend Certificates</title><link>https://huawei.github.io/css-docs/en/docs/common-o-m-operations/managing-storage-backends-using-kubectl/managing-storage-backend-certificates/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://huawei.github.io/css-docs/en/docs/common-o-m-operations/managing-storage-backends-using-kubectl/managing-storage-backend-certificates/</guid><description>&lt;p>CSI allows you to add a storage certificate to use the TLS/SSL protocol to encrypt data transmission channels, improving the security of communication with storage devices.&lt;/p>
&lt;h2 id="section1156241310541">Adding a Storage Certificate&lt;/h2>
&lt;ol>
&lt;li>
&lt;p>Create a certificate. Take OceanStor Dorado as an example. For details about how to create a certificate, 
&lt;a href="https://support.huawei.com/hedex/hdx.do?docid=EDOC1100214756&amp;amp;id=EN-US_TOPIC_0000001595814228&amp;amp;lang=en" target="_blank">click here&lt;/a>
.&lt;/p>
&lt;/li>
&lt;li>
&lt;p>Run the following command to create a secret from the certificate file:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" style="color:#4c4f69;background-color:#eff1f5;-moz-tab-size:4;-o-tab-size:4;tab-size:4;">&lt;code class="language-fallback" data-lang="fallback">&lt;span style="display:flex;">&lt;span>kubectl create secret generic cert-1 --from-file=tls.crt=/path/to/cert.crt -n huawei-csi
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>Run the following command to update the StorageBackendClaim, enable the certificate, and specify the certificate secret. The format of the certSecret field is &lt;em>&amp;lt;namespace&amp;gt;&lt;/em>/&lt;em>&amp;lt;secret-name&amp;gt;&lt;/em>.&lt;/p></description></item><item><title>Deleting a Storage Backend</title><link>https://huawei.github.io/css-docs/en/docs/common-o-m-operations/managing-storage-backends-using-kubectl/deleting-a-storage-backend-101/</link><pubDate>Mon, 01 Jan 0001 00:00:00 +0000</pubDate><guid>https://huawei.github.io/css-docs/en/docs/common-o-m-operations/managing-storage-backends-using-kubectl/deleting-a-storage-backend-101/</guid><description>&lt;blockquote>
&lt;p>&lt;img src="https://huawei.github.io/css-docs/css-docs/public_sys-resources/en-us/icon-notice.gif">&lt;br>
Do not delete a storage backend when a volume management operation is being performed on it.&lt;/p>
&lt;/blockquote>
&lt;ol>
&lt;li>
&lt;p>Delete the StorageBackendClaim.&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" style="color:#4c4f69;background-color:#eff1f5;-moz-tab-size:4;-o-tab-size:4;tab-size:4;">&lt;code class="language-fallback" data-lang="fallback">&lt;span style="display:flex;">&lt;span>kubectl delete sbc backend-demo -n huawei-csi
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>After the StorageBackendClaim is deleted, the controller automatically deletes the associated StorageBackendContent.&lt;/p>
&lt;/li>
&lt;li>
&lt;p>Check whether StorageBackendContent is deleted.&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" style="color:#4c4f69;background-color:#eff1f5;-moz-tab-size:4;-o-tab-size:4;tab-size:4;">&lt;code class="language-fallback" data-lang="fallback">&lt;span style="display:flex;">&lt;span>kubectl get sbct
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>If the associated StorageBackendContent is no longer listed, the deletion is successful.&lt;/p>
&lt;/li>
&lt;li>
&lt;p>Run the following commands to manually delete the associated ConfigMap and secret:&lt;/p></description></item></channel></rss>