In this article
...
Note | ||
---|---|---|
| ||
|
...
- Once Enhanced Account Encryption is enabled, you are not be able to see or edit the existing values for the encrypted data types.
...
- Install the latest Groundplex RPM/DEB on one of the Groundplex nodes which that is already running with enhanced encryption. This step is required to get the new addDataKey option in the
jcc.sh
script. As root user, run the following command:
Code Block /opt/snaplogic/bin/jcc.sh addDataKey keyFeb2020
This command generate generates a new key pair and append it to the keystore in/etc/snaplogic
folder with the specified alias (keyFeb2020).- You must copy the generated data keys files (
jcc-datakeys.jks
andjcc-datakeys.pass
) from this node to all the others in the Org, similar to when originally setting up the enhanced encryption feature. - Restart the nodes in the Org. This step is required to pick up the updated key pair. Each node can be restarted one at a time from the dashboard in order to do an online restart.
Once all the nodes are running with the new key pair loaded, the Enhanced Encryption settings display the drop-down list allowing the Org admin to change to the new key.
...