SAP ASE reads the master and dual master key encryption keys from the master key start-up file into the server memory.
The server is started with automatic master key access enabled, or
automatic master key access is enabled while the server is running.
An automatic_startup key copy of the master or dual master key is created, SAP ASE writes the master or dual master key encryption keys to the file.
The key encryption key of the automatic_startup key copy of the master or dual master key is altered, SAP ASE writes the new master or dual master key encryption keys to the file.
An automatic_startup key copy is dropped, SAP ASE deletes the corresponding record in the file.
A database is dropped, SAP ASE deletes all records belonging to the dropped database.
A master or dual master key is dropped, SAP ASE deletes the corresponding record.
A new master key start-up file is specified using sp_encryption mkey_startup_file, SAP ASE synchronizes the server memory with the contents of the new file.
Once a master key encryption key is in memory, the master key can be accessed through the automatic_startup copy even if the master key password is not set.