During my Drive Encryption testing I created some local encryption keys... is it possible to delete these keys from the SafeGuard Management Console and database?
Thanks
This thread was automatically locked due to age.
craig_j wrote:
During my Drive Encryption testing I created some local encryption keys... is it possible to delete these keys from the SafeGuard Management Console and database?
Thanks
Hi craig_j,
Thank you for posting your question on the SophosTalk community forums. It looks like you actually have two question concatenated into one.
The first question is "is it possible to delete these keys from the SafeGuard Management Console?" and the second question is "is it possible to delete these keys from the database?"
I'll respond to them in order.
Yes, it is possible to delete keys from the SG MC but the keys become inactive and are hidden from the user's view. They are still encrypted in the database and are available in the future in the event your user comes across old or archive media encrypted with an inactive key.
Deleting a key from the database is not recommended because of the above example. Also, the keys are protected in the database so if you decide to do some MS SQL brain surgery you may end up with a database which is modified failing the checksum and signature tests.
Great question! Thanks again for posting it!