Chapter 7 Encryption Key ManagementConfiguring Encryption Key Management on the LibraryScalar i500 User’s Guide 1976 The destination administrator saves the file containing the wrappeddata encryption keys to a location on a computer, and then importsthe keys onto the destination SKM server (see Importing DataEncryption Keys on page 200).7 The destination library can now read the encrypted tapes.For more information about the key servers and library managedencryption best practices, please refer to the Scalar Key Manager User’sGuide.Exporting the Native Encryption Certificate 7To receive encryption keys from another SKM server, you must first sendyour SKM server’s native encryption certificate to that server. The publickey contained in the native encryption certificate will be used to wrap(encrypt) the encryption keys to protect them during transport to you.To export an encryption certificate:1 Before starting this process, read and follow the sequence of stepsoutlined in Sharing Encrypted Tape Cartridges on page 196.2 From the Tools menu, select EKM Management > EncryptionCertificate > Export.3 Click Apply to export your SKM server’s native encryptioncertificate.4 Click Close to close the Progress Window.5 In the File Download dialog box that displays, click Save.6 In the Save As dialog box that opens, choose a location in which tosave the file, then click Save.Note: This function is available to administrators and only appliesto SKM servers. Since the native encryption certificate is thesame for both servers in an SKM server pair, you may export itwhen only one SKM server is connected/operational.