Configure Security Module
Protecting encryption keys is a critical aspect of securing the overall Sectona Security Platform. The Security Module ensures that encryption key is secured by integrating external cryptographic operations such as physical and cloud-hosted Hardware Security Module (HSM).
It enables secure encryption and decryption of platform encryption key using strong cryptographic standards such as AES 256-bit and RSA 2048-bit, ensuring data confidentiality and integrity across the system.
Supported HSM Providers
Physical HSM Providers
-
Utimaco HSM
-
Thales HSM
-
Generic HSM - (Any PKCS#11 complaint HSM)
Cloud-Hosted HSM Providers
-
AWS Cloud HSM
-
Azure Cloud HSM
Supported Cloud key Providers
-
AWS KMS: Amazon Web Services Key Management Service (KMS) is a managed service that lets you create, store, and control cryptographic keys used to encrypt your data.
-
Azure Key Vault: Microsoft Azure Key Vault is a cloud service that securely stores and manages secrets, encryption keys, and certificates.