Understanding the requirements
-
The DKE module is fully compatible with Windows and iOS.
Decryption works on macOS and Android, but encryption has not yet been tested.
-
You must generate your KEKs and add them to the keks.json file, in the dke_keys section:
For more information, see Generating KEKs.
-
The DKE module is not compatible with a KMS. It will not be enabled if the Stormshield KMaaS is started with the persistence_type set to "kms".
-
Microsoft Purview sensitivity labels must be configured to reference the public key endpoint exposed by the Stormshield KMaaS.
-
For information on global requirements and recommendations, refer to section Understanding the global requirements