You can revoke or restore access to KeyIDs using the webGUI. If you revoke access to a KeyID, the KeyID is retained in Cryptographic Security Platform Vault but it cannot be used to encrypt or decrypt data until it has been restored.

  1. Log into the Cryptographic Security Platform Vault for VM Encryption using an account with Cloud Admin privileges.
  2. In the top menu bar, click Workloads.
  3. In the VM Sets tab, select the Cloud VM Set to which the KeyID belongs.
  4. In the Details area below the list of Cloud VM Sets, click the KeyIDs tab.
  5. Select the KeyID whose access you want to manage and do one of the following:

    • To revoke access to the KeyID, select Actions > Revoke KeyID Access, then click Proceed at the prompt.
    • To restore access to a revoked KeyID, select Actions > Activate KeyID Access.