Skip to main content

Configure Cloud Key Management (KMS) for Okta

This article provides information on how to use keys from your AWS KMS account to encrypt and decrypt your data.

Updated today

📝NOTE: The availability of this feature may be limited based on the license type, region, and other criteria. To access this feature, contact support.

After authentication, the Cloud Key Management configuration wizard appears.

Scheduled Backup of SaaS Apps data requires access to the data encryption key to encrypt backed-up data. This process is part of the digital envelope encryption process that Druva strictly adheres to. Druva does not store the user’s data encryption key and has no access to the data.

Select one of the following options to generate the data encryption key.

Cloud Key Management System (KMS) (recommended) - Uses AWS KMS services to encrypt and decrypt SaaS Apps data. You cannot disable this setting once saved. For more information, see Configure Key Management.


📝NOTE: Scheduled backups and environment discovery will fail if KMS is not configured.


Did this answer your question?