What's New

The following changes have been made in KeyControl Vault Version 10.1.

For a list of changes made in earlier releases, see Release Change History.

What's New in KeyControl Vault Version 10.1

Important: From KeyControl Vault Version 10.1, you must install the KeyControl Compliance Manager. The KeyControl Compliance Manager is used to onboard and license KeyControl Vaults.

Feature

Description

Where Documented

New KeyControl Vault Architecture

The KeyControl Vault family of products has been divided into two components:  

  • KeyControl Compliance Manager—This application handles all global requirements for your vaults, such as licensing and authorization.

  • KeyControl Vault— All of the KeyControl Vault applications have been separated and moved into individual vaults.

KeyControl Compliance Manager

KeyControl Vaults

Licensing changes

The licensing for all KeyControl Vaults has been moved to the KeyControl Compliance Manager. This is required before you can create a vault.

Managing the KeyControl Vault License

Added support for Oracle TDE

The database vault now supports Oracle Transparent Data Encryption (TDE) as an external key manager (EKM).

Database Vault Overview

Added support for Tokenization

The new Tokenization Vault provides APIs for tokenization, masking, and encryption of data.

Tokenization Vault Overview 

Added support for Managed HSM in Azure

KeyControl Vault now supports Azure-managed HSMs.

Configuring Azure for KeyControl Vault BYOK

Added support for Smartcards for nShield HSM

KeyControl Vault now supports Remote Administration Ready Smartcards for nShield HSMs.

Configuring KeyControl Vault as an HSM Client using an nShield HSM

Thales Luna HSM library updates

KeyControl Vault now includes the Luna HSM library v10.5.1-174

Hardware Security Modules with KeyControl Vault 

Added support for Arcsight CEF log format

KeyControl Vault now supports the Arcsight Comment Event Format (CEF) for logging.

Syslog Server Settings

Added support for AWS XKS

KeyControl Vault now supports AWS KMS External Key Store (XKS), which enhances the KMS key hierarchy with the addition of an on-premise root of trust.

KeyControl and AWS External Key Store (XKS) Overview