Deleting a wrapping key
You can delete a selected wrapping key, which can be in any state, such as active. You cannot delete a wrapping key that is marked as either a default or partner key, or is scheduled for rollover. For example, you might delete an expired certificate.
Before you begin
Ensure that a backup exists of the keystore with the wrapping key that you intend to delete.
Verify that the wrapping key is not marked as a default or partner key, or is scheduled for
rollover. Determine the current state of the wrapping key, and ensure that deleting a wrapping key
in this state conforms with your site policies.
Note: Delete wrapping keys only
when the data that is protected by those wrapping keys is no longer needed. Deleting wrapping is
like erasing the data. After the wrapping keys are deleted, data that is protected by those wrapping
keys is not retrievable.
About this task
You can use the Delete option to delete a wrapping key. Alternatively, you can use the following REST services:
Your role must have permissions to the delete action and to the appropriate endpoint.
Deleting a wrapping key deletes the material from the database.
Procedure
- Using the graphical user interface
- Log in to the graphical user interface.
- On the home page, click the menu icon (
) at the upper left of the page. - Click .
- On the Configured endpoints page, select your 3592 endpoint
and click the overflow menu icon (
). - From the overflow menu options, click View.
- Alternatively, on the home page, click your 3592 endpoint link in the Configured endpoints section.
- On the 3592 endpoint management page, select a wrapping key in the wrapping key table and click the overflow menu icon.
- From the overflow menu options, click Delete.
- On the Confirm delete dialog, read the confirmation message to verify that the correct wrapping key is selected before you delete the wrapping key. Then, click OK.
- Using a REST interface
What to do next
Next, you might back up the keystore again to accurately reflect the change in wrapping keys.