Skip to main content

Akeyless Gateway

The Akeyless platform is a secrets management system, allowing clients to store, protect, rotate and create keys and certificates. Their Distributed Fragments Cryptography (DFC) technology allows clients to secure their secrets store using key fragments that are distributed between 3 cloud providers and optionally a client-managed key store. By splitting the key into multiple fragments, Akeyless ensures that knowledge of one fragment is not enough to leak the whole key.

An optional 4th fragment, called the customer fragment (CF), is managed by the client themselves. Primus HSM or CloudHSM provide a perfect place to keep the customer fragment. They are highly secure yet easy-to-use.

Akeyless Diagram and Securosys HSM integration

How it works

To use customer fragments, you need to complete the following steps:

  1. Generate a customer fragment.
  2. Deploy an Akeyless Gateway.
  3. Secure your DFC Encryption Key with the customer fragment.

Learn more

To learn more about customer fragments and Zero-Knowledge encryption, see the Akeyless documentation:

Next Steps

Get started withCloudHSM for free.
Other questions?Ask Sales.
Feedback
Need help?