Enabling the Encryption Keystore and Creating a TDE Master Key

This task enables a keystore and creates the first TDE master key.

The OKV endpoint keystore is also known as the "OKV shared wallet." Once a keystore has been created, it must be enabled for use and the first TDE master key created for it.

  1. Open the keystore so that it can be used.
    [root@myComputeNodeX ~]# racli enable keystore

    For details on the command options, refer to "racli enable keystore".

  2. Create a TDE master key for the Recovery Appliance.
    [root@myComputeNodeX ~]# racli alter keystore --initialize_key