1. From the Cryptographic Security Platform Vault for Secrets webGUI, select Manage > Manage Boxes.

  2. On the Manage Boxes page, select the box where you want to create a secret.

  3. On the Box page, in the Secrets region, click Add.

  4. In the Choose a type of secret to create dialog box, select Azure User.

  5. On the About page of the Create Secret: Azure User wizard, complete the following: 

    Option

    Description

    Name

    Enter the name to use for the secret.

    Description

    Enter the optional description for the secret.

    Expires

    Select one of the following: 

    • Use Box Setting—Accepts the global box value. This is the default.

    • No Expiration—The secret does not expire.

    • Specific Date and Time—Allows you to set the specific date and time for the secret to expire.

  6. Click Continue.
  7. On the Secret Details page of the Create Secret: Azure User wizard, complete the following: 

    Option

    Description

    Tenant ID


    Client ID


    Object ID

    Optional. 

    Authentication Type

    This can be Client Secret or Certificate. 

    Secret Key ID

    Enter the key ID of the existing client secret or certificate currently active in your Azure App Registration.

    Client Secret

    If you selected Client Secret for the Authentication type, enter the client secret. 

    Client Certificate (PEM)

    If you selected Certificate for the Authentication Type, click Browse to upload the certificate file in PEM format. 

    Private Key (PEM)

    If you selected Certificate for the Authentication Type, click Browse to upload the private key file in PEM format. 

    Checkout Scope

    This can be Azure Management API or Microsoft Graph API. 

  8. Click Continue.
  9. On the Rotation Details page of the Create Secret: Azure User wizard, complete the following:

    Option

    Description

    Rotation Duration

    Sets the duration for this secret to be rotated.

    • Use Box Setting—Use the duration set when creating the box. This is the default.

    • Duration—Enter a duration in days, minutes, or hours. This value will overwrite the box settings.

    Validity Days


  10. Click Create.