You can change which configured key server is the primary key server with the management GUI or the command-line interface. One key server must be configured as the primary key server on the system and in IBM Security Key Lifecycle Manager. The primary key server copies encryption keys to any additional key servers that are configured for the system. Usually you need to change the primary key server only if the primary key server changes on the IBM Security Key Lifecycle Manager.
lskeyserverFrom the displayed results, verify the IP address and name of the current key server that is designated as the new primary key server.
chkeyserver -primary idwhere id is the ID of the new primary key server. The previous primary key server is removed automatically as the primary.