See below to export any key from a Vault for Cryptographic APIs (Export-Vault) and then import it into a different one (Import-Vault).
Export-Vault and Import-Vault can be different versions, as long as both are version 10.4.5 or later and support the target key type.
To import a key from a different Cryptographic API
Log in to the Import-Vault web GUI.
Create an RSA-2048 key in the web GUI.
Select the key that you created, and click Download Public Key to download the public part of the RSA-2048 key.
In a different browser window, log into the Export-Vault web GUI.
From the Home tab, select Manage > Keys.
On the Manage Keys page, select the RSA-2048 key that you want to export and select Actions > Export Key.
Click Download Key. The RSA-2048 key from the Export-Vault is now wrapped by the Import-Vault wrapping key and downloaded.
Return to the Import-Vault web GUI.
From the Home tab, select Manage > Keys.
On the Manage Keys page, select Actions > Import Key.
On the Import Key page, complete the following.
Field
Description
Name
Enter the new name for the key that you exported.
Description
Enter the optional description for the key that you exported.
Algorithm
Select AES.
Key Length
Select 256.
Key Material
Select the wrapped AES key that you exported.
Wrapping Key
Select the RSA-2048 public key that you used to wrap the AES key.
Wrapping Key Version
Select the version of the key that you exported.
Hashing Algorithm
Select SHA1.
Click Import Key.