When you disable a CloudKey for TDE, you can disable all existing CloudKey versions at the same time. The key versions will remain in the cloud, but cannot be used by any applications.

  1. Log into the Cryptographic Security Platform Vault for Databases webGUI using an account with Cloud Admin privileges.
  2. In the top menu bar, click CloudKeys.
  3. Click the CloudKeys tab.

  4. Select the CloudKey that you want to disable.

  5. Click Actions > Disable CloudKey.

  6. In the Disable CloudKey window, if you want to disable all versions of the CloudKey, check the Disable All Key Versions checkbox.

    Note: This option is not available if there is only one version of the CloudKey.

  7. Click Disable.