Skip to content

Commit bac859d

Browse files
Merge pull request #311898 from jackrichins/patch-94
Update 7 services now supporting MHSM
2 parents 664417e + fa7da94 commit bac859d

1 file changed

Lines changed: 8 additions & 8 deletions

File tree

articles/security/fundamentals/encryption-customer-managed-keys-support.md

Lines changed: 8 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -3,7 +3,7 @@ title: Services that support customer managed keys (CMKs) in Azure Key Vault and
33
description: Services that support customer managed keys (CMKs) in Azure Key Vault and Azure Managed HSM
44
author: msmbaldwin
55
ms.author: mbaldwin
6-
ms.date: 01/12/2026
6+
ms.date: 02/17/2026
77
ms.service: security
88
ms.subservice: security-fundamentals
99
ms.topic: article
@@ -42,7 +42,7 @@ The following services support server-side encryption with customer managed keys
4242
| [Azure Data Explorer](/azure/data-explorer/) | Yes | | [Configure customer-managed keys (CMK) in Azure Data Explorer](/azure/data-explorer/customer-managed-keys-portal) |
4343
| [Azure Data Factory](/azure/data-factory/) | Yes | Yes | [Encryption with customer-managed keys for Azure Data Factory](/azure/data-factory/enable-customer-managed-key) |
4444
| [Azure Data Lake Store](/azure/data-lake-store/) | Yes (RSA 2048-bit) | | |
45-
| [Azure Data Manager for Energy](/azure/energy-data-services/) | Yes | | [Manage data security and encryption](/azure/energy-data-services/how-to-manage-data-security-and-encryption) |
45+
| [Azure Data Manager for Energy](/azure/energy-data-services/) | Yes | Yes | [Manage data security and encryption](/azure/energy-data-services/how-to-manage-data-security-and-encryption) |
4646
| [Azure Databricks](/azure/databricks/) | Yes | Yes | [Customer-managed keys for managed services](/azure/databricks/security/keys/customer-managed-key-managed-services-azure) |
4747
| [Azure HDInsight](/azure/hdinsight/) | Yes | | [Azure HDInsight double encryption for data at rest](/azure/hdinsight/disk-encryption) |
4848
| [Azure Monitor Application Insights](/azure/azure-monitor/app/app-insights-overview) | Yes | | [Customer-managed keys in Azure Monitor](/azure/azure-monitor/logs/customer-managed-keys) |
@@ -92,7 +92,7 @@ The following services support server-side encryption with customer managed keys
9292
| [SQL Server on Azure VM](/azure/azure-sql/virtual-machines/) | Yes | | [Configure Azure Key Vault integration for SQL Server on Azure VMs](/azure/azure-sql/virtual-machines/windows/azure-key-vault-integration-configure) |
9393
| [SQL Server on Virtual Machines](/azure/virtual-machines/windows/sql/) | Yes | | [Transparent data encryption for SQL Server on Azure VM](/azure/virtual-machines/windows/sql/virtual-machines-windows-sql-security#transparent-data-encryption) |
9494
| [SQL Server Stretch Database](/azure/sql-server-stretch-database/) | Yes (RSA 3072-bit) | | |
95-
| [Table Storage](/azure/storage/tables/) | Yes | | [Customer-managed keys for Azure Storage encryption](/azure/storage/common/customer-managed-keys-overview) |
95+
| [Table Storage](/azure/storage/tables/) | Yes | Yes | [Customer-managed keys for Azure Storage encryption](/azure/storage/common/customer-managed-keys-overview) |
9696

9797
## Hybrid + multicloud
9898

@@ -105,7 +105,7 @@ The following services support server-side encryption with customer managed keys
105105
| Product, feature, or service | Key Vault | Managed HSM | Documentation |
106106
|---|---|---|---|---|
107107
| [Azure Fluid Relay](/azure/azure-fluid-relay/) | Yes | Yes | [Customer-managed keys for Azure Fluid Relay](/azure/azure-fluid-relay/concepts/customer-managed-keys) |
108-
| [Azure Health Data Services](/azure/healthcare-apis/) | Yes | | [Configure customer-managed keys for Azure Health Data Services DICOM](/azure/healthcare-apis/dicom/configure-customer-managed-keys), [Configure customer-managed keys for Azure Health Data Services FHIR](/azure/healthcare-apis/fhir/configure-customer-managed-keys) |
108+
| [Azure Health Data Services](/azure/healthcare-apis/) | Yes | Yes | [Configure customer-managed keys for Azure Health Data Services DICOM](/azure/healthcare-apis/dicom/configure-customer-managed-keys), [Configure customer-managed keys for Azure Health Data Services FHIR](/azure/healthcare-apis/fhir/configure-customer-managed-keys) |
109109
| [Event Hubs](/azure/event-hubs/) | Yes | Yes | [Configure customer-managed keys for encryption](/azure/event-hubs/configure-customer-managed-key) |
110110
| [Logic Apps](/azure/logic-apps/) | Yes | | |
111111
| [Service Bus](/azure/service-bus-messaging/) | Yes | Yes | [Configure customer-managed keys for encryption](/azure/service-bus-messaging/configure-customer-managed-key) |
@@ -137,16 +137,16 @@ The following services support server-side encryption with customer managed keys
137137

138138
| Product, feature, or service | Key Vault | Managed HSM | Documentation |
139139
|---|---|---|---|---|
140-
| [Azure Information Protection](/azure/information-protection/) | Yes | | [How are the Azure Rights Management cryptographic keys managed and secured?](/azure/information-protection/how-does-it-work#how-the-azure-rms-cryptographic-keys-are-stored-and-secured) |
141-
| [Microsoft Defender for Cloud](/azure/defender-for-cloud/) | Yes | | [Customer-managed keys in Azure Monitor](/azure/azure-monitor/logs/customer-managed-keys) |
140+
| [Azure Information Protection](/azure/information-protection/) | Yes | Yes | [How are the Azure Rights Management cryptographic keys managed and secured?](/azure/information-protection/how-does-it-work#how-the-azure-rms-cryptographic-keys-are-stored-and-secured) |
141+
| [Microsoft Defender for Cloud](/azure/defender-for-cloud/) | Yes | Yes | [Customer-managed keys in Azure Monitor](/azure/azure-monitor/logs/customer-managed-keys) |
142142
| [Microsoft Defender for IoT](/azure/defender-for-iot/) | Yes | | |
143143
| [Microsoft Sentinel](/azure/sentinel/) | Yes | Yes | [Encryption at rest in Microsoft Sentinel](/azure/sentinel/customer-managed-keys) |
144144

145145
## Storage
146146

147147
| Product, feature, or service | Key Vault | Managed HSM | Documentation |
148148
|---|---|---|---|---|
149-
| [Archive Storage](/azure/storage/blobs/archive-blob) | Yes | | [Customer-managed keys for Azure Storage encryption](/azure/storage/common/customer-managed-keys-overview) |
149+
| [Archive Storage](/azure/storage/blobs/archive-blob) | Yes | Yes | [Customer-managed keys for Azure Storage encryption](/azure/storage/common/customer-managed-keys-overview) |
150150
| [Azure Backup](/azure/backup/) | Yes | Yes | [Encrypt backup data using customer-managed keys](/azure/backup/encryption-at-rest-with-cmk) |
151151
| [Azure Cache for Redis](/azure/azure-cache-for-redis/) | Yes\*\* | Yes | [Configure disk encryption for Azure Cache for Redis instances using customer managed keys](/azure/azure-cache-for-redis/cache-how-to-encryption) |
152152
| [Azure Data Box](/azure/databox/) | Yes | | [Use a customer-managed key to secure your Data Box](/azure/databox/data-box-customer-managed-encryption-key-portal) |
@@ -167,7 +167,7 @@ The following services support server-side encryption with customer managed keys
167167

168168
| Product, feature, or service | Key Vault | Managed HSM | Documentation |
169169
|---|---|---|---|---|
170-
| [Universal Print](/universal-print/) | Yes | | [Data encryption in Universal Print](/universal-print/fundamentals/universal-print-encryption) |
170+
| [Universal Print](/universal-print/) | Yes | Yes | [Data encryption in Universal Print](/universal-print/fundamentals/universal-print-encryption) |
171171

172172
## Caveats
173173

0 commit comments

Comments
 (0)