Enable Customer Managed Keys for your Organization on Microsoft Azure

Enable Customer Managed Keys for your Organization on Microsoft Azure

Step 1. Create a key vault

Step 1. Create a key vault

In Azure Key Vault, create a key vault to store your CMK. Note the key vault URI because you will need it when you allow Informatica's application to use the key vault.
  1. Log in to the Azure portal.
  2. In the
    Search
    box, enter
    Key Vault
    .
  3. From the results list, select
    Key Vault
    .
  4. In the
    Key Vault
    section, select
    Create
    .
  5. On the
    Basics
    tab, configure the key vault details and click
    Next
    .
  6. On the
    Access configuration
    tab, select the
    Azure role-based access control
    permission model, review and update the other access policies as needed, and click
    Next
    .
  7. On the
    Networking
    tab, review the networking details and click
    Next
    .
  8. On the
    Tags
    tab, add tags to the key vault and click
    Next
    .
  9. On the
    Review + create
    tab, review the key vault configuration and click
    Create
    .
  10. After deployment completes, click
    Go to Resource
    to view the key vault you just created and note the vault URI.
  11. Under
    Objects
    , select
    Keys
    and check your permissions.
    If you see the message "This operation is not allowed by RBAC," perform the following steps to configure your role assignment:
    1. Click
      Access control (IAM)
      .
    2. On the
      Role assignments
      tab, click
      Add
      Add role assignment
      .
    3. On the
      Add role assignment
      page, open the
      Role
      tab, and select the Key Vault Administrator role.
    4. On the
      Members
      tab, assign the Key Vault Administrator role to yourself or the user that you want to be the key vault administrator.
    5. On the
      Review + assign
      tab, verify the role assignment settings.
    6. Click
      Review + assign
      .
    The key vault administrator should be able to create keys at this point.

0 COMMENTS

We’d like to hear from you!