© The Author(s), under exclusive license to APress Media, LLC, part of Springer Nature 2022
M. McGiffenPro Encryption in SQL Server 2022https://doi.org/10.1007/978-1-4842-8664-7_20

20. Extensible Key Management (EKM)

Matthew McGiffen1  
(1)
Bristol, UK
 

EKM is functionality that exists in SQL Server to allow you to store your keys in a secure repository away from your database or application servers. Traditionally this repository would have been a piece of hardware known as a Hardware Security Module (HSM) which would sit in a rack in your server room. These days we’re much more likely to use an HSM backed cloud service such as Azure Key Vault.

The advantages are twofold. Firstly, security can be greatly improved as the ability to manage keys in a central ...

Get Pro Encryption in SQL Server 2022: Provide the Highest Level of Protection for Your Data now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.