When you create an asymmetric KeyID, you can either load a public and private key or allow Cryptographic Security Platform Vault to create the KeyID.

  1. Log into the Cryptographic Security Platform Vault for VM Encryption using an account with Cloud Admin privileges.
  2. In the top menu bar, click Workloads.
  3. On the VM Sets tab, select the Cloud VM Set where you want to create an asymmetric KeyID.
  4. Select Actions > Create Asymmetric KeyID.
  5. In the Create New Asymmetric KeyID window, complete the following: 

    Option

    Description

    KeyID Name

    Enter the name to use for the asymmetric KeyID .

    CVM Set Name

    This field is automatically populated with the selected Cloud VM Set. If you want to add the KeyID to a different Cloud VM Set, enter its name in this field.

    If you change this name, make sure you use the exact name of the Cloud VM Set shown in the webGUI. The field is case-sensitive, so "SF-Datacenter" is different from "SF-datacenter". If you specify an invalid Cloud VM Set name, the key will not be created.

    Description

    Enter the optional description for the asymmetric KeyID.

    Key Size

    Enter the key size. This can be 4096 or 2048.

    Public Key

    Optionally click Load File to upload the public key in base64 encoded pem format. If you upload a public key you must also upload a matching private key.

    Private Key

    Optionally click Load File to upload the private key in base64 encoded pem format. If you upload a private key you must also upload a matching public key.

  6. Click Create.