About key management services (KMS) | Veritas Sheltered Harbor solution workflow | Veritas Solution Guide for Sheltered Harbor | Veritas™

Veritas Solution Guide for Sheltered Harbor

Last Published:
Product(s): NetBackup & Alta Data Protection (10.5)

About key management services (KMS)

The NetBackup Sheltered Harbor solution encrypts and decrypts the data encryption key with the help of cloud KMS (CKMS) or on-premises KMS (KMIP based).

To start configuration with the NetBackup Sheltered Harbor solution, it is required to configure cloud KMS or on-premises KMS. You need to create KMS key pair for encryption, decryption, signing and sign verification.

Note:

NetBackup KMS cannot be used for configuring the Sheltered Harbor solution.

The NetBackup Sheltered Harbor solution supports the following KMS:

  • CKMS: Supports the Azure key vault

  • EKMS: Supports Thales cipherTrust manager and utimaco ESKM

To know more about CKMS and EKMS, refer to EKMS document.