When you disable a CloudKey for TDE, you can disable all existing CloudKey versions at the same time. The key versions will remain in the cloud, but cannot be used by any applications.
- Log into the Cryptographic Security Platform Vault for Databases webGUI using an account with Cloud Admin privileges.
- In the top menu bar, click CloudKeys.
Click the CloudKeys tab.
Select the CloudKey that you want to disable.
Click Actions > Disable CloudKey.
In the Disable CloudKey window, if you want to disable all versions of the CloudKey, check the Disable All Key Versions checkbox.
Note: This option is not available if there is only one version of the CloudKey.
Click Disable.