Issue: RMA failing when encrypting sensitive data is enabled on director.

Bug ID: 71576  
Description: Support of RMA when encrypting sensitive data is enabled

Impacted release : 21.1.3/21.2.2 GA
Fix Release: 21.2.3 



Workaround:  Perform one of the following as a workaround 


Option 1 : Copy /var/lib/vs/.ckey from the old device to the new device and restart the services.

Option 2:

In Appliance CLI

Update the local and peer auth info with the decrypted/actual key for one of the ipsec profile 

 

From Director CLI

unhide full         (password: "secret")

request system security update-encryption-metadata appliance-name <name of the appliance>

 

From Director GUI


  1. Do a Sync-from-Appliance


  2. Re-deploy the device workflow
  3. Commit the template


Option 3: Delete the appliance and re-onboard the appliance.