Deleting encryption keys from a file

Delete encryption keys from a file on the HDvM - SN computer.

You can only delete encryption keys with the Free attribute. Encryption keys with the other attributes (CEK, DEK, KEK) cannot be deleted.

Before you begin

  • Create the secondary backup of the encryption key. See Backing up encryption keys.
  • Verify that the key is not allocated to the parity group.
  • You must have the Security Administrator (View & Modify) role.

Procedure

  1. Display the Device Manager - Storage Navigator main window.

  2. Expand Administration in the Explorer pane, and select Encryption Keys.

  3. On the Encryption Keys tab, select the key ID for the key you want to delete from the Encryption Keys table, and click More Actions Delete Keys.

  4. If you also want to back up other encryption keys to the key management server at this time, click Next (instead of Finish). For details about backing up keys to the key management server, see Backing up the encryption keys manually to a key management server.

  5. In the Delete Keys window, click Finish.

  6. In the Confirm window, confirm the settings, and enter your task name in Task Name, and then click Apply.

    If you want the Task window to open after you click Apply, select Go to tasks window for status.
  7. In the message that appears asking whether to apply the setting to the storage system, click OK.

Results

The data encryption key is deleted.