Hytrust Keycontrol: Datasheet

Download as pdf or txt
Download as pdf or txt
You are on page 1of 2

Datasheet

HyTrust KeyControl
Universal key management for encrypted workloads

Key Challenges for an Encrypted Enterprise HyTrust KeyControl Benefits


Managing the security of workloads in a dynamic, virtualized environment is a time- –– Pre-selected,validated solution by
consuming and complex challenge for administrators. Encrypting workloads helps to reduce VMware
your risk of data breaches; if data does fall into the wrong hands, it is unreadable. However, –– Universal key management for
managing the keys for tens of thousands of encrypted workloads is not trivial. To ensure KMIP1-compatible encryption
strong data security, keys have to be rotated frequently, and transported and stored securely. agents

Along with the high demand for strong data security, there is an ever-increasing business –– Rapid roll-out and easy to use:
need to meet regulatory requirements for PCI-DSS, HIPAA, NIST-800-53, and GDPR –– Saves operational cost
compliance in virtual environments. –– Minimizes errors
–– Helps to rapidly meet
Many virtualization platforms such as VMware vSphere lack native key management security, compliance, or audit
functionality, requiring a third-party external Key Manager Server (KMS). For multi-cloud requirements
environments, key management is even more complex as many key management systems
–– Enterprise scale and availability
cannot interoperate between different platforms.
–– High Availability (HA) in active-
active cluster
–– Easily upgradeable to HyTrust
DataControl for complete, multi-
cloud workload encryption

HyTrust KeyControl
With HyTrust KeyControl, businesses can easily manage encryption keys at scale. Using
FIPS 140-2 compliant encryption, HyTrust KeyControl simplifies management of encrypted
workloads by automating and simplifying the lifecycle of encryption keys; including key 1
The Key Management
storage, distribution, rotation, and key revocation. Interoperability Protocol (KMIP)
standard was introduced in 2010,
Universal Key Management for KMIP clients by an alliance of vendors led by
HyTrust KeyControl is a VMware certified, scalable, and feature-rich KMIP 1 server to Hewlett-Packard, IBM, and EMC/
simplify key management for encrypted workloads. It serves as a Key Management Server RSA Security, in order to simplify the
for VMware vSphere and vSAN encrypted clients, or other products that support KMIP. interoperability of encryption keys.
Datasheet

Enterprise Scalability and Performance Highlights


HyTrust KeyControl manages the encryption keys for all your virtual machines and –– VMware Certified Key Manager
encrypted data stores and can scale to support thousands of encrypted workloads in large Server (KMS) for:
deployments. Up to eight key managers can be added to a cluster to increase availability –– vSphere6.5
and resiliency in high volume key request environments. –– vSAN6.6

Enhanced Multi-Cloud Workload Encryption –– Supports KMIP 1.1 – 1.4


HyTrust KeyControl is easily upgraded to HyTrust DataControl, which enables multi-cloud –– Highly Availability (HA) active-active
workload encryption, and policy-based key management. It ensures policies are enforced, deployments and clustering
even when moving workloads across cloud platforms such as VMware, Microsoft Azure and
–– Up to eight HTKC servers in a
Amazon AWS. HyTrust DataControl ensures that data within each VM is securely encrypted cluster
(AES-128/256-bit) throughout its lifecycle: from installation, upon boot, until each workload is
securely decommissioned. –– FIPS 140-2 Level 1 validated. FIPS
140-2 Level 3 compliance via HSM
support

Extending Cloud Security with HyTrust CloudSPF


HyTrust KeyControl is part of the HyTrust Cloud Security Policy Framework (CloudSPF), which
includes HyTrust CloudControl, DataControl and BoundaryControl. The framework enables
cross-platform virtualization platforms with advanced security and audit controls, strong
encryption, key management, and workload geo-fencing solutions.

To learn more about HyTrust products


and services, visit: www.hytrust.com/
products/

HyTrust © 2017 HyTrust, Inc. All rights reserved. HyTrust, and the HyTrust logo are
1975 W. El Camino Real, Suite 203 trademarks and/or registered trademarks of HyTrust, Inc., and/or its subsidiaries
Mountain View, CA 94040, USA in the United States and/or other countries. All other trademarks are properties of
1-844-681-8100 (US) their respective owners.
1-650-681-8100 (Intl.)
20171005-0023

You might also like