To delete a key group from an NGE node, the key group must be removed (unbound) from all SDPs, VPRN services, PW templates, and router interfaces that use it.
tools>perform>service>eval-pw-template>allow-service-impact
To locate the key group bindings, use the CLI command show>group-encryption> encryption-keygroup keygroup-id.
Use the following CLI syntax to delete a key group:
config# group-encryption
— no encryption-keygroup keygroup-id
config>grp-encryp# no encryption-keygroup 8