In the AWS Management Console, search for External key stores and select the Key Management Service (KMS).
In the Create external key store wizard, configure the following settings:
- Custom key store name: Enter a name for the key store. You can change this name at any time. Also, if you set a different name in CryptoHub later, it updates automatically.
- Proxy connectivity: Select Public endpoint and specify the Proxy URI endpoint (such as
demo.useast1-cryptohub-uat.virtucrypt.com). - Proxy configuration: Select [ Upload configuration file ] and select the AWS Proxy Configuration JSON file downloaded from CryptoHub.
- Select [ Create external key store ].
Note the Custom key store ID for when you create an XKS Key Store on the CryptoHub in the next section.

