Security Module with Cloud Key Management

Supported Cloud key Providers

  • AWS KMS: Amazon Web Services Key Management Service (KMS) is a managed service that lets you create, store, and control cryptographic keys used to encrypt your data.

  • Azure Key Vault: Microsoft Azure Key Vault is a cloud service that securely stores and manages secrets, encryption keys, and certificates.

Enable Security Module with Cloud key

  • Navigate to Platform Configuration → System → Security Module

  • Select Cloud Key option.

  • Select the vendor from the dropdown and enter the required provider details.

  • Enter the username configured in cloud Key configuration.

  • Enter the corresponding password configured against username in cloud key.

  • Select encryption algorithm from drop-down based on cloud key configuration.

  • Specify the key type of encryption (e.g., AES OR RSA).

  • Enter the unique identifier of the Key ID or Key Name based on cloud key configuration.

  • Enter the API URL and select Region.

  • Enable the Status and click Save.

  • In the confirmation popup, click Yes to proceed.

Disable Security Module with Cloud key

Follow these steps to disable HSM configuration:

  • Navigate to Platform Configuration → System → Security Module

  • Change status to inactive/disabled.

  • Confirm the action by saving updated configuration.

Result:

  • The application restarts automatically.

After the application restarts, retrieve the updated configuration file from the current node and synchronize it across all system application nodes to ensure consistency.