What options are there for HSM on Azure Stack HCI?

Jaime Rodriguez 1 Reputation point
2023-01-04T20:24:36+00:00

Can i use managed HSM on Azure Stack HCI?
Could it be a third party HSM?

Thanks!

Azure Stack HCI
Azure Stack HCI
A hyperconverged infrastructure operating system delivered as an Azure service that provides security, performance, and feature updates.
264 questions
Azure Dedicated HSM
Azure Dedicated HSM
An Azure service that provides hardware security module management.
25 questions
{count} votes

3 answers

Sort by: Most helpful
  1. Martin Dimovski 1,591 Reputation points MVP
    2023-01-04T21:10:55.843+00:00

    Hi,

    Thank you for posting the question to the Q&A forum.

    Yes you can use HSM managed on Azure Stack HCI below you can see all of the informations here: https://learn.microsoft.com/en-us/azure/key-vault/managed-hsm/overview

    But also you can use 3rd party HSM, so far just 4 options: CloudFlare, PrimeKey, New Net and Hashicorp Vault you can find more here: https://learn.microsoft.com/en-us/azure/key-vault/managed-hsm/third-party-solutions

    I hope the above information can help you.

    If the ANSWER is helpful, please click "Accept Answer" and upvote it. Thanks


  2. Martin Dimovski 1,591 Reputation points MVP
    2023-01-05T23:30:03.46+00:00

    Sorry for the misunderstanding @Jaime Rodriguez let's do on this way :

    Can I use managed HSM on Azure Stack HCI?

    Yes, you can use the below is the reference link from MS: https://learn.microsoft.com/en-us/azure/key-vault/managed-hsm/overview

    276638-managedhsmazurestack.png

    Could it be a third-party HSM?

    Yes it can, reference link from MS: https://learn.microsoft.com/en-us/azure/key-vault/managed-hsm/third-party-solutions

    276678-thirdpartyhsm.png

    I hope the above information can help you if not please let me know.

    If the ANSWER is helpful, please click "Accept Answer" and upvote it. Thanks

    0 comments No comments

  3. Martin Gammelgård Rasmussen 0 Reputation points
    2023-02-27T08:26:11.7+00:00

    The Azure Stack solutions supports Azure Key Vault Standard Tier, which does not support HSM keys.
    https://learn.microsoft.com/en-us/azure-stack/user/azure-stack-key-vault-intro?view=azs-2206#key-vault-basics
    https://learn.microsoft.com/en-us/azure/security/fundamentals/key-management#azure-key-management-services

    You can install extensions in your Azure Stack solutions, that support communication with any Azure Key Vault service hosted in Microsoft Cloud.

    0 comments No comments