What options are there for HSM on Azure Stack HCI?

Jaime Rodriguez 1 Reputation point
2023-01-04T20:24:36+00:00

Can i use managed HSM on Azure Stack HCI?
Could it be a third party HSM?

Thanks!

Azure Dedicated HSM
Azure Dedicated HSM
An Azure service that provides hardware security module management.
34 questions
Community Center | Not monitored
{count} votes

3 answers

Sort by: Most helpful
  1. Martin Dimovski 1,636 Reputation points MVP
    2023-01-04T21:10:55.843+00:00

    Hi,

    Thank you for posting the question to the Q&A forum.

    Yes you can use HSM managed on Azure Stack HCI below you can see all of the informations here: https://learn.microsoft.com/en-us/azure/key-vault/managed-hsm/overview

    But also you can use 3rd party HSM, so far just 4 options: CloudFlare, PrimeKey, New Net and Hashicorp Vault you can find more here: https://learn.microsoft.com/en-us/azure/key-vault/managed-hsm/third-party-solutions

    I hope the above information can help you.

    If the ANSWER is helpful, please click "Accept Answer" and upvote it. Thanks


  2. Martin Dimovski 1,636 Reputation points MVP
    2023-01-05T23:30:03.46+00:00

    Sorry for the misunderstanding @Jaime Rodriguez let's do on this way :

    Can I use managed HSM on Azure Stack HCI?

    Yes, you can use the below is the reference link from MS: https://learn.microsoft.com/en-us/azure/key-vault/managed-hsm/overview

    276638-managedhsmazurestack.png

    Could it be a third-party HSM?

    Yes it can, reference link from MS: https://learn.microsoft.com/en-us/azure/key-vault/managed-hsm/third-party-solutions

    276678-thirdpartyhsm.png

    I hope the above information can help you if not please let me know.

    If the ANSWER is helpful, please click "Accept Answer" and upvote it. Thanks

    0 comments No comments

  3. Martin Gammelgård Rasmussen 0 Reputation points
    2023-02-27T08:26:11.7+00:00

    The Azure Stack solutions supports Azure Key Vault Standard Tier, which does not support HSM keys.
    https://learn.microsoft.com/en-us/azure-stack/user/azure-stack-key-vault-intro?view=azs-2206#key-vault-basics
    https://learn.microsoft.com/en-us/azure/security/fundamentals/key-management#azure-key-management-services

    You can install extensions in your Azure Stack solutions, that support communication with any Azure Key Vault service hosted in Microsoft Cloud.

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.