Azure Key Vault -

jolly 0 Reputation points
2024-10-29T16:13:52.45+00:00

Hello,

i am very new to AKV. We have Dev, UAT and Prod SQL environments (on prem) and every quarter we refresh the data in Dev and UAT from Prod by restoring the production database to these downstream environments. If we enable TDE and use AKV to manage the keys how can we restore the databases to the downstream environments if we are prohibited from granting access to the production key vault from the non production environments. Is there a recommended methodoligy to do this?

kind regards

Azure Key Vault
Azure Key Vault
An Azure service that is used to manage and protect cryptographic keys and other secrets used by cloud apps and services.
1,448 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. hossein jalilian 10,825 Reputation points Volunteer Moderator
    2024-10-29T16:50:20.73+00:00

    Hello jolly,

    Thanks for posting your question in the Microsoft Q&A forum.

    When managing Transparent Data Encryption keys for SQL Server databases using Azure Key Vault across environments, it's recommended to use separate key vaults for each environment (Dev, UAT, Prod) to ensure proper isolation and security, especially when refreshing data from production to non-production environments.


    Please don't forget to close up the thread here by upvoting and accept it as an answer if it is helpful


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.