How to import key exchange key in TR-31 format in Azure Key Vault?

Carlos Sáez 1 Reputation point
2021-10-08T11:11:11.447+00:00

The 3rd party, does not have the HSM requirement for using BYOK tool and transfer to us the key for import in Azure Key Vault.

They only can transfer the key exchange key in TR-31 format (key exchange block).

How can I import this type of key format in Azure Key Vault?

Thank you in advance
Kind regards

Carlos

Azure Key Vault
Azure Key Vault
An Azure service that is used to manage and protect cryptographic keys and other secrets used by cloud apps and services.
1,107 questions
Azure Dedicated HSM
Azure Dedicated HSM
An Azure service that provides hardware security module management.
25 questions
{count} votes

1 answer

Sort by: Most helpful
  1. Siva-kumar-selvaraj 15,546 Reputation points
    2021-10-11T12:04:20.427+00:00

    @Carlos Sáez

    Hello Carlos,

    Thanks for reaching out.

    TR31 key blocks are not supported.

    Key blocks are typically used with Payment HSM for the transfer of 3DES or AES keys. The HSM used by Key Vault are general propose HSM and key vault does not support symmetric keys.

    Hope this helps.

    ------
    Please "Accept the answer" if the information helped you. This will help us and others in the community as well.

    1 person found this answer helpful.