Not returning keys when adding a new SKLM key server
Applies to
- ONTAP 9
- External Key Management (EKM)
- IBM Security Key Lifecycle Manager (SKLM)
Issue
- Migration to a new IBM SKLM key server (2.7.0 > 4.1.1.6)
- New key server added successfully
- Attempt to query the key server shows: There are no entries that matching your query.
cluster::*> security key-manager show -status
Node Port Registered Key Manager Status
---------------------- ------ ---------------------------
cluster_NL-01 5696 x.x.x.15 available
cluster_NL-01 5696 x.x.x.40 available
cluster_NL-02 5696 x.x.x.15 available
cluster_NL-02 5696 x.x.x.40 available
- When they attempt to run a key-manager key query -key-server x.x.x.40, it does not return any keys for the .40
cluster::> security key-manager query -address x.x.x.40
There are no entries matching your query.