Understanding the requirements

  • The DKE module is fully compatible with Windows and iOS.

    Decryption works on macOS and Android, but encryption has not yet been tested.

  • You must generate your KEKs and add them to the keks.json file, in the dke_keys section:

    For more information, see Generating KEKs.

  • The DKE module is not compatible with a KMS. It will not be enabled if the Stormshield KMaaS is started with the persistence_type set to "kms".

  • Microsoft Purview sensitivity labels must be configured to reference the public key endpoint exposed by the Stormshield KMaaS.

  • For information on global requirements and recommendations, refer to section Understanding the global requirements