Lab: Pervasive Encryption - A Key's Life
Project and Program:
Enterprise Data Center
Tags:
Proceedings ,
SHARE Columbus 2022
Encryption is easy. Key management is hard. Now that many customers have
implemented data set encryption, many are battling the challenges of key
management. Come to this hands-on lab to practice managing the lifecycle of
pervasive encryption keys. Try out different methods of generating cryptographic
keys. Learn how to use the CKDS KEYS panel utility to browse and manage keys in
the CKDS, add metadata to keys, and establish and enforce key validity dates. We
will archive old keys such that they can only be used to decrypt old data, while
at the same time rolling over to new keys to encrypt new data, completing the
key lifecycle. In the end, we will look at the full lifecycle of our keys via
audit records. This lab has been recently updated to include new functionality
pertaining to managing a key at the end of its lifecycle.
Back to Proceedings File Library