Integration overview
-
Create a Key Exchange Key (KEK) in Azure and download it to the online computer.
-
Transfer the KEK using media, for example a USB thumb drive, to the offline computer.
-
Wrap your on-premise HSM protected key with the KEK.
-
Transfer the wrapped key using media to the online computer.
-
Upload the wrapped key to Azure.