Chapter 7 Encryption Key ManagementConfiguring Encryption Key Management on the LibraryScalar i500 User’s Guide 198Importing Encryption Certificates 7The encryption certificate contains a public key that is used to wrap(encrypt) encryption keys prior to transporting them to another SKMserver. When sharing tape cartridges, you need to import the encryptioncertificate of the destination SKM server.To import encryption certificates:1 Before starting this process, read and follow the sequence of stepsoutlined in Sharing Encrypted Tape Cartridges on page 196.2 Receive the encryption certificate file from the destination SKMserver administrator and save it to a known location on yourcomputer.3 From the Tools menu, select EKM Management > EncryptionCertificate > Import.4 Click Browse to locate the saved encryption certificate file.5 Click Open.6 Click Apply to import the certificate onto your SKM server.Exporting Data Encryption Keys 7SKM servers provide a unique encryption key for each tape cartridge thatis encrypted. In order for another (i.e., destination) SKM server to readtapes encrypted by your SKM server (i.e., source), you need to export theencryption keys used to encrypt those tapes and send them to thedestination server.Note: This function is available to administrators and only appliesto SKM servers. Both SKM servers must be connected andoperational in order to import encryption certificates.Note: This function is available to administrators and only appliesto SKM servers. Both SKM servers must be connected andoperational in order to export data encryption keys.