Product Documentation

To allow sites to manage the encryption policies of different applications, SAKA uses encryption domains. An encryption domain is a logical collection of keys, policies, users, and encrypted data, all of which are protected under a unique encryption domain key (EDK) to encrypt all symmetric keys. The EDK is a 256-bit EC asymmetric key pair generated and protected by SAKA's Cryptographic Hardward Module. As part of the domain creation process, the EDK must be manually replicated from the Primary appliance to all other known SAKA instances at the site. Every encryption domain is unique and never shares its EDK with other encryption domains.