Quick Reference Guide
Deleting the ekmcert Certificate, Keys, and Key Groups, and Renaming Devices
When performing an EKM 2.X to EKM 3.0 merge, there cannot be duplicate ekmcert certificates, key aliases, key group
aliases, or devices in EKM 2.X and on the EKM 3.0 server.
NOTE: If there are duplicate keys or key groups, Dell recommends that you rename the duplicate keys and key
groups in EKM 2.X before merging them into EKM 3.0. Refer to the EKM 2.X user's guide for more information. If the
duplicate keys or key groups are obsolete, you can delete them in EKM 2.X. However, deleting a key is the
equivalent of deleting any data protected by that key as the data will no longer be accessible. Deleted keys cannot
be recovered by any means for security purposes.
If you have duplicate devices, you must delete a device in EKM 2.X.
If you receive the following error when performing the merge procedure, delete the appropriate item based on the error
message.
Duplicate <item> = <item> Migration failed. Please refer to the debug file for
more information.
Refer to the appropriate section:
• ekmcert Certificate Deletion
• Deleting a Specific Key
• Deleting a Device
37