We are excited to announce the Public Preview of Key attestation for Azure Key Vault Managed HSM.
This feature allows you to validate the authenticity of cryptographic keys stored within the hardware security module (HSM) thereby enhancing trust in key management processes and further enabling compliance with stringent security standards. This feature is especially valuable in scenarios where customers need assurance that their keys are protected from unauthorized access, even from cloud providers.
The key attestation process has four steps:
- Downloading or cloning the Python scripts and requirements from our Github repository
- Setting up a virtual environment and installing the required Python packages
- Retrieving key attestation data from the HSM
- Verifying the key’s authenticity and the attestation data file, and viewing parsed attributes of the attestation binary
To learn more and try it out yourself, see the Key attestation product documentation.
Updated Mar 17, 2025
Version 1.0chenkaren
Microsoft
Joined October 20, 2023
Microsoft Security Blog
Follow this blog board to get notified when there's new activity