Azure Dedicated HSM (Hardware Security Module is a cloud-based service that provides organizations with exclusive access to FIPS 140-2 Level 3-validated HSM devices, ensuring secure and compliant cryptographic key management. By deploying Thales Luna 7 HSM model A790 appliances directly into a customer's virtual network, Azure Dedicated HSM offers full administrative and cryptographic control, enabling seamless migration of on-premises HSM-protected applications to the Azure cloud environment.
Key Features and Functionality:
- Exclusive Control: Customers maintain sole administrative and cryptographic control over their HSMs, with Microsoft having no access to the keys stored within.
- High Security Standards: The service utilizes FIPS 140-2 Level 3 and eIDAS Common Criteria EAL4+ validated devices, meeting stringent security and compliance requirements.
- Seamless Migration: Compatible with numerous applications, Azure Dedicated HSM facilitates the migration of legacy or custom on-premises applications to Azure with minimal changes, enhancing performance and reducing latency.
- High Performance: The Thales Luna 7 HSM model A790 delivers up to 10,000 RSA-2048 operations per second, supporting up to ten partitions for diverse application instances.
Primary Value and Problem Solved:
Azure Dedicated HSM addresses the critical need for secure, compliant, and high-performance cryptographic key management in the cloud. It provides organizations with dedicated, single-tenant HSM devices that meet rigorous security standards, ensuring data protection and regulatory compliance. By offering full control over cryptographic operations and facilitating the migration of existing HSM-dependent applications to Azure, the service enables businesses to leverage cloud scalability without compromising on security or performance.
Seller
MicrosoftDiscussions
Azure Dedicated HSM Community