Login to the Cryptographic Security Platform Vault for KMIP:
$./kmipcli login -u "username" -p "password" --login-URL <VAULT_API_URL> --cacert ca.cert
Create the KMIP client certificate:
$./kmipcli create-client-cert --name "client-cert-name" --expiry-days "expiry_days_in_int"
Get the KMIP client certificate details:
$./kmipcli get-client-cert -c "client-cert-name"
Download the KMIP client certificate:
$./kmipcli download-client-cert -c "client-cert-name"
Delete the KMIP client certificate:
$./kmipcli delete-client-cert -c "client-cert-name"
List all Cryptographic Security Platform Vault for KMIP local users:
$./kmipcli list-local-users
Get the total count of all objects in the Cryptographic Security Platform Vault for KMIP:
$./kmipcli get-kmip-object-count
//response
{
"total": 1
}Get Cryptographic Security Platform Vault for KMIP access policy details:
$./kmipcli list-policies
Update the state of an existing key to archived:
$./kmipcli update-kmip-object -a archive -u c2b0d10f-4255-46cb-9ef0-1ab5de5c7428
Fetch the full details including custom attributes of a key:
$ ./kmipcli get-kmip-object -u c2b0d10f-4255-46cb-9ef0-1ab5de5c7428
//response
{
"activationDate": "2025-06-30T08:07:46Z",
"archive_date": "2025-06-30T08:28:58Z",
"cryptographic_algorithm": "3DES",
"cryptographic_length": 128,
"cryptographic_usage_mask": "Encrypt,Decrypt",
"initial_date": "2025-06-30T08:07:46Z",
"key_format_type": "Raw",
"last_change_date": "2025-06-30T08:28:58Z",
"object_type": "Symmetric Key",
"Operation Policy Name": "default",
"state": "Active",
"x-NETAPP-ClusterId": "50b7a51c-6f12-11e4-88de-123478563412",
"x-NETAPP-KeyId": "00000000000000000200000000000500f6296053dd1df233554eaf8f3665d2ce0000000000000000",
"x-NETAPP-KeyType": "AES",
"x-NETAPP-Product": "Data ONTAP",
"x-NETAPP-VserverId": "48",
"kek_encrypted": false
}