Create and Manage Key Stores

You can create, view, edit, move, and delete Key Stores from the Oracle Cloud Infrastructure Console.

Create a Key Store

Follow these steps to create a Key Store to connect to an on-premises encryption key appliance such as Oracle Key Vault (OKV).

  1. Go to Autonomous Database in the Oracle Cloud Infrastructure Console.

    For instructions, see Access Dedicated Autonomous Database in the Oracle Cloud Infrastructure Console.

  2. Choose your Compartment.

  3. Click Key Stores. Key Stores page displays the list name of key stores, the number of databases associated with each database, and the date on which each key store was created.

  4. Click Create Key Store.

  5. In the Create Key Store dialog, enter the following general information:

    1. Name your key store: A user-friendly description or other information that helps you easily identify the Key Store resource. Avoid entering confidential information.
    2. Oracle Key Vault connection settings:
      1. Connection IP addresses: Enter at least one OKV cluster node IP address; multiple comma-separated IP addresses (of the same OKV cluster) are possible, for example, 193.10.20.1, 193.10.20.2.
      2. Administrator username: Enter the user name of the okv_rest_user.
      3. Administrator Password Secret: The administrator password is stored with the secret management service within OCI. Select the OCI Vault in your tenancy that contains okv_rest_user password stored as Secret.
    3. Tags: Optionally, you can apply tags. If you have permission to create a resource, you also have permission to apply free-form tags to that resource. To apply a defined tag, you must have permission to use the tag namespace. For more information about tagging, see Tag Autonomous Database Cloud Resources. If you are not sure if you should apply tags, skip this option (you can apply tags later) or ask your administrator. Avoid entering confidential information.
  6. Click Create Key Store.

View Key Store Details

Follow these steps to view Key Store details that include Oracle Key Vault (OKV) connection details and the list of associated databases.

  1. Go to Autonomous Database in the Oracle Cloud Infrastructure Console.

    For instructions, see Access Dedicated Autonomous Database in the Oracle Cloud Infrastructure Console.

  2. Choose your Compartment.

  3. Click Key Stores. Key Stores page displays the list name of Key Stores, the number of databases associated with each database, and the date on which each Key Store was created.

  4. Click the name of the Key Store or click the Actions icon (three dots), and then click View Details.

  5. Click the link in the Administrator Password Secret field to view secret details.

Edit Key Store Details

You can edit a Key Store only if it is not associated with any Autonomous Container Databases.

  1. Go to Autonomous Database in the Oracle Cloud Infrastructure Console.

    For instructions, see Access Dedicated Autonomous Database in the Oracle Cloud Infrastructure Console.

  2. Choose your Compartment.

  3. Click Key Stores.

  4. Click the name of the Key Store or click the Actions icon (three dots), and then click View Details.

  5. On the Key Store Details page, click Edit.

  6. On the Edit Key Store page, make changes as needed, and then click Save Changes.

Move a Key Store to Another Compartment

Follow these steps to move a Key Store from one compartment to another compartment.

  1. Go to Autonomous Database in the Oracle Cloud Infrastructure Console.

    For instructions, see Access Dedicated Autonomous Database in the Oracle Cloud Infrastructure Console.

  2. Choose your Compartment.

  3. Click Key Stores.

  4. Click the name of the Key Store or click the Actions icon (three dots), and then click View Details.

  5. On the Key Store Details page, click Move Resource.

  6. On the Move Resource to a Different Compartment page, select the new compartment.

  7. Click Move Resource.

View Key Store Associated Container Database Details

Follow these steps to view details of the Autonomous Container Database associated with a Key Store.

  1. Go to Autonomous Database in the Oracle Cloud Infrastructure Console.

    For instructions, see Access Dedicated Autonomous Database in the Oracle Cloud Infrastructure Console.

  2. Choose your Compartment.

  3. Click Key Stores.

  4. In the Key Stores page, click the name of the Key Store or click the Actions icon (three dots), and then click View Details.

  5. Click the name of the associated database or click the Actions icon (three dots), and then click View Details.

Delete a Key Store

You can delete a Key Store only if it is not associated with any Autonomous Container Databases.

  1. Go to Autonomous Database in the Oracle Cloud Infrastructure Console.

    For instructions, see Access Dedicated Autonomous Database in the Oracle Cloud Infrastructure Console.

  2. Choose your Compartment.

  3. Click Key Stores.

  4. Click the name of the Key Store or click the Actions icon (three dots), and then click View Details.

  5. On the Key Store Details page, click Delete.

  6. On the Delete Key Store dialog, click Delete.