Installing Verse on Premise 2.0, one of th requirments is setting up the credential store in Domino. Doing this, i ran into a problem: i couldn’t import the just created encryption key into my Domino cluster members. Nothing in the documentation shows me how to list and/or remove the existing keys. Even Google didn’t get any hits. I opened a CASE with HCL for this issue. It seems that there is documentation for it, but not indexed by Google. The (again) perfect HCL support department gave me the article in 5 minutes after opening the CASE. After performing the actions mentioned in this article, i could import the key into Domino again.

Article: https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0074820

Issue

 A document encryption key was created mistakenly on the secondary Server in cluster

When trying to import the key from the Primary Server to the cluster member, we got an error message:

Cannot add the encryption key to your id file.  A key with that name already exists.

Cause

The Server.id on the Secondary Server already contains a encryption key thus, it would no longer accept the encryption key exported from the Primary Server.

Resolution

To resolve, we need to remove the previously created credstore key in the ID file.

Steps to remove the bad credstore key from the Server.id:

Make a copy of the server ID file.
Then from a Notes client switch to that ID file.
Then follow the procedure below.

Procedure
1. Click File > Security > User Security
2. Click Notes Data > Documents.
3. Select the secret encryption key you want to delete under “Secret Key Name.”
4. Click Other Actions > Delete Secret Key in the bottom right corner of the “Document Encryption” dialog box.
5. Click Yes to confirm the deletion.

Visits: 966

By angioni

Leave a Reply

Your email address will not be published. Required fields are marked *

Time limit is exhausted. Please reload CAPTCHA.