Akeyless Gateway
The Akeyless platform is a secrets management system, allowing clients to store, protect, rotate and create keys and certificates. Their Distributed Fragments Cryptography (DFC) technology allows clients to secure their secrets store using key fragments that are distributed between 3 cloud providers and optionally a client-managed key store. By splitting the key into multiple fragments, Akeyless ensures that knowledge of one fragment is not enough to leak the whole key.
An optional 4th fragment, called the customer fragment (CF), is managed by the client themselves. Primus HSM or CloudHSM provide a perfect place to keep the customer fragment. They are highly secure yet easy-to-use.

How it works
To use customer fragments, you need to complete the following steps:
- Generate a customer fragment.
- Deploy an Akeyless Gateway.
- Secure your DFC Encryption Key with the customer fragment.
Learn more
To learn more about customer fragments and Zero-Knowledge encryption, see the Akeyless documentation:
Next Steps
- Follow the installation guide to get started with the integration.
- Get started with Akeyless on the Akeyless website.
- Learn more about Akeyless Gateway.