You can specify a key group for future use as the system default.
About this task
You can use the graphical user interface or the Key Group Default Rollover
Add REST Service to add a default key group rollover on a specific date to serve keys to a
endpoint. Your role must have the permission to the create action and a
permission to the appropriate endpoint.
Procedure
- Log in to the graphical user interface.
- On the home page, click the menu icon (
) at the upper left of the page.
- Click .
- On the Configured endpoints page, select your LTO endpoint and click the overflow menu icon
(
).
- From the overflow menu options, click View.
- Alternatively, on the home page, click your LTO endpoint link in the Configured
endpoints section.
- Specify an existing key group to be a future system default. On the LTO endpoint management page, click the
LTO key group rollover icon.
- On the LTO wrapping key rollover page, click Add future
write default.
- On the Add future write default - LTO dialog, click
Select to select the key group.
- Select the effective date.
- Click Add. The rollover key group is listed on the LTO
wrapping key rollover page.
- Do not specify two defaults for the same rollover date.
- If a key group does not exist at the time of rollover, IBM Guardium Key Lifecycle Manager continues to use the current default key
group.
- You can add or delete table entries, but cannot modify an entry.
- To delete an LTO wrapping key context from the
rollover table, complete the following steps.
- Select an LTO wrapping key context and click the overflow
menu icon (
) and click Delete.
- On the confirmation window, click OK.