Installation Guides › Implementation Guide › Implementation Overview › SOA Security Manager Overview › SOA Security Manager Architecture and Components › Data Stores › Key Store
Key Store
(Required) By default, the SOA Security Manager key store (key store) is automatically configured and collocated with the policy store. The purpose of this component is to store the encryption keys Policy Servers and Agents use to encrypt sensitive data, which include:
- The keys Agents use to encrypt SOA Security Manager cookies.
- The keys Policy Servers use to encrypt sensitive policy store information, such as administrator passwords.
- The keys Policy Servers use to encrypt SOA Security Manager session tickets that contain credentials and other information related to user sessions.
You can store encryption keys in a separate directory or database. The need to deploy a separate key store depends on:
- How you implement Policy Servers and policy stores
- Your single sign–on requirements