Previous Topic: Move Keys to a BES Database for Sharing Keys

Next Topic: Move Keys for CPU Upgrades That Support CKDS

How You Modify Your Configuration for Key Management for CPU Upgrades

If you are upgrading your production system from one that does not have a cryptographic coprocessor to one that does, you can modify your CA Tape Encryption configuration to support the capabilities of the new system. In your existing configuration, keys are stored in the BES database because the system does not support CKDS. Because the new system has a cryptographic coprocessor and does support CKDS, you can move your keys from the BES database to CKDS. To modify your configuration, you need to do the following:

Note: You are not required to store the keys in the CKDS, but you have the option to do so.