Cryptographic Security Platform Vault v 10.4.7 Online Documentation Set

Updated October 22, 2025

Cryptographic Security Platform Vault® provides encryption and key management for virtual machines located in data centers or private, public, or hybrid clouds. Cryptographic Security Platform Vault consists of two main components:

  • Entrust Cryptographic Security Platform Vault (Cryptographic Security Platform Vault) — Cryptographic Security Platform Vault stores encryption keys, policies, and configuration for any number of virtual machines with the Entrust Policy Agent installed.
  • Entrust Policy Agent (Policy Agent) — A software module that runs inside Windows and most Linux operating systems that provides encryption of virtual disks, file systems, and individual files.

This online documentation set includes all of the books for Cryptographic Security Platform Vault Version 10.4.7. You can also access:

  • A list of the new and changed features in Version 10.4.7 in What's New.
  • A PDF version of the current Entrust Cryptographic Security Platform Release Notes , and documentation for previous DataControl releases at https://trustedcare.entrust.com/.

For the latest information about Entrust, upcoming events, and our products, visit https://www.entrust.com/digital-security/cloud-security-encryption-key-management or follow us on https://twitter.com/Entrust_Corp.

Books Included in the Online Documentation Set

Installation and Upgrade Guide

Explains how to install and Entrust Cryptographic Security Platform Vault. Provides basic Cryptographic Security Platform Vault webGUI configuration information required to verify that the installation was successful.

Entrust Cryptographic Security Platform Vault

Provides detailed configuration information for Cryptographic Security Platform Vault and explains how to encrypt VMs with the Policy Agent.

Programmer's Reference Guide

Describes the Entrust CLI (hicli) and REST API scripting interfaces for Cryptographic Security Platform Vault. Contains a copy of the manpages for the hcl, hcs3, and htroot commands.

Cryptographic Security Platform Vault with VSAN and VMware vSphere VM Encryption

Explains how to set up a Cryptographic Security Platform Vault KMIP server as a vSphere KMS (Key Management Server), which allows Cryptographic Security Platform Vault to manage the encryption keys for virtual machines that have been encrypted with vCenter Server for vSphere Virtual Machine Encryption or VMware VSAN Encryption.

Cryptographic Security Platform Vault in Amazon Web Services

Explains how to deploy Cryptographic Security Platform Vault in an Amazon Web Services (AWS) environment and how to encrypt AWS root and swap drives.

Cryptographic Security Platform Vault in Microsoft Azure

Explains how to install and configure Cryptographic Security Platform Vault on Microsoft Azure.

Release Change History

A list of the main new features introduced in every release of Cryptographic Security Platform Vault.