See below to remove a CloudKey.

Removing a CloudKey removes the key material from the KMS, and applications can no longer use this key from the cloud. However, the Cryptographic Security Platform Vault retains a copy of the key that you can upload back to the cloud.

To remove a CloudKey

  1. Log in to the Vault web GUI using an account with Cloud Admin privileges.
  2. In the top menu bar, click CloudKeys.
  3. Click the CloudKeys tab.

  4. Select the CloudKey that you want to remove from the cloud.

  5. Click Actions > Remove from Cloud.

  6. On the confirmation screen, enter the CloudKey name, then type Remove.