Skip to main content
NetApp Knowledge Base

After "delete-kmip-config", "key-manager show" displays deleted key server entries

Views:
179
Visibility:
Public
Votes:
0
Category:
ontap-9
Specialty:
core
Last Updated:

Applies to

  • ONTAP 9.1
  • NetApp Storage Encryption (NSE)
  • External Key Manager Servers (KMIP)

Issue

When trying to remove the kmip config, deleted kmip servers reappear with the security key-manager show command.

Cluster::*> security key-manager show
 
Node Registered Key Manager
---------------------- ---------------------------
Cluster-01 192.168.0.20
Cluster-02 192.168.0.20
2 entries were displayed.
 
Cluster::*> security key-manager delete -address 192.168.0.20
 
Cluster::*> security key-manager show
No key management servers registered.
 
Cluster::*> security key-manager delete-kmip-config
 
Warning: This command will permanently delete the KMIP-server configuration from all nodes of the cluster.
Do you want to continue? {y|n}: y
The KMIP-server configuration has been successfully deleted from all nodes
of the cluster. The keys stored by the external KMIP servers cannot be
deleted by Data ONTAP, and must be deleted by using external tools.
 
Cluster::*> security key-manager show
 
Node Registered Key Manager
---------------------- ---------------------------
Cluster-01 192.168.0.20
Cluster-02 192.168.0.20
2 entries were displayed.

 

Sign in to view the entire content of this KB article.

New to NetApp?

Learn more about our award-winning Support

Scan to view the article on your device