1. Getting started
    1. Secure Data and Applications with Next-Generation Cryptography
    2. Architecture - Attackers, Threats and Solutions
    3. Encryption Schemes
      1. Advanced Encryption Schemes
        1. Covercrypt Post-Quantum Encryption with Access Policies
      2. Alternative Encryption Schemes
        1. Format Preserving Encryption
        2. Anonymize Data
    4. Verifiable Confidential Computing
    5. Search Encrypted Data
  2. Key Management System
    1. Why use the Eviden KMS
    2. Quick start
    3. Use cases
      1. Encrypting and decrypting at scale
      2. Client-side and application-level encryption
      3. Anonymization
    4. PKI Support
      1. Introduction
      2. Revocation & CRL Distribution
      3. OCSP Responder
    5. HSM Support
      1. Introduction
      2. HSM keys & operations
      3. Multi-HSM support
      4. Trustway Crypt2pay
      5. Trustway Proteccio
      6. Utimaco General Purpose
      7. Smart card HSM / Nitrokey HSM 2
      8. SoftHSMv2
      9. Other HSMs
    6. KMIP Support
      1. Introduction
      2. KMIP support summary
      3. Supported Objects
      4. Supported Formats
      5. Objects Tagging
      6. Attributes Extensions
      7. The JSON TTLV KMIP API
      8. Bulk mode with Messages
      9. Operations
        1. Operations
        2. Attributes
          1. Get
          2. Set
          3. Modify
          4. Delete
        3. Certify
        4. Create
        5. Create Key Pair
        6. Decrypt
        7. Destroy
        8. Encrypt
        9. Export
        10. Get
        11. Hash
        12. Import
        13. Locate
        14. Mac
        15. Key rotation
          1. Re-Key
          2. Re-Key Key Pair
          3. Re-Certify
          4. Key Rotation
          5. HSM Key Rotation
          6. Auto-Rotation Policy
        16. Revoke
        17. Sign
    7. Integrations
      1. API overview
        1. API Endpoints
        2. OpenAPI Specification and Swagger UI
      2. JOSE (JWS, JWE, JWKS)
        1. JOSE API
        2. JWE Key Unwrap
        3. JWKS Endpoint
      3. Cloud providers
        1. Amazon Web Services (AWS)
          1. ECS Fargate
          2. External Key Store (XKS)
            1. XKS integration
            2. XKS migration
          3. BYOK (Bring Your Own Key)
        2. Microsoft Azure
          1. BYOK (Bring Your Own Key)
          2. EKM (External Key Management)
          3. Microsoft 365 Double Key Encryption (DKE)
          4. Windows CNG Key Storage Provider (KSP)
        3. Google Cloud Platform (GCP)
          1. CMEK (Customer Managed Encryption Keys)
          2. CSEK (Customer Supplied Encryption Keys)
        4. Google Workspace Client-Side Encryption (CSE)
          1. Getting started
          2. Configuring the .well-known file
          3. Generating Gmail keys
          4. Migrating existing Drive CSE elements
          5. Migrating existing email to Gmail CSE
      4. Databases
        1. MongoDB
        2. MySQL Enterprise Edition
        3. PostgreSQL Percona Database
        4. Microsoft SQL Server External (EKM)
        5. Oracle Database TDE
        6. EDB Postgres Advanced Server TDE
        7. InterSystems IRIS
      5. Disk encryption
        1. Veracrypt
        2. LUKS
        3. Cryhod
      6. Storage
        1. VMware vCenter
        2. Synology DSM (NAS volume encryption)
        3. VAST Data (Storage encryption EKM)
        4. Veeam Backup & Replication
      7. Big Data
        1. Snowflake Native App
        2. User Defined Function for PySpark, Databricks,... in Python
      8. Container Orchestration
        1. Kubernetes
        2. Helm Chart Deployment
        3. KMS Provider Plugin
        4. Secrets Store CSI Driver
        5. Kubernetes Operator
      9. Other
        1. FortiGate / FortiOS
        2. OpenSSH
        3. PyKMIP
        4. KMIP compliance tests (ovh/kmip-go)
        5. S/MIME Email encryption
        6. Terraform / OpenTofu Provider
      10. SPIRE / SPIFFE
        1. Vault-compatible integration
        2. Native KMIP 2.1 plugins
    8. Installation
      1. Getting started
      2. Deploying in a Cosmian Confidential VM
      3. High-availability
    9. Configuration
      1. Configuration file
      2. Configuration examples
      3. Command line arguments
      4. Databases
        1. Configuration
        2. Tables
        3. Redis with Findex
      5. Object & Unwrapped Caches
      6. Authenticating users to the server
      7. PKCE Authentication
      8. Authorizing users with access rights
        1. Ownership and access rights
        2. Role Management and Key Ceremony
      9. Enabling TLS
      10. Obtaining TLS Certificates
      11. Logging and telemetry
      12. Log reference
      13. Monitoring
        1. Setup
        2. Metrics reference
      14. User interface
      15. UI branding
      16. Custom OpenSSL build
      17. Secret backends
    10. Certifications and compliance
      1. FIPS 140-3
      2. Cryptographic algorithms
        1. Algorithms
        2. KMIP algorithm policy
      3. Zeroization
      4. Audit
        1. SBOM
        2. CBOM
        3. Security Audit (OWASP)
        4. Multi-Framework Security Audit
    11. Benchmarks
      1. Reports
      2. CPU Scaling & Flamegraphs
    12. KMS Clients
      1. Getting started
      2. Installation
      3. Configuration
        1. Authentication
        2. Examples
      4. Usage
        1. Command Line Interface
      5. Access Rights
      6. S/MIME Gmail
  3. Authentication Verifier
    1. Overview
    2. Installation
    3. Getting started
    4. Server configuration
    5. Authentication
      1. Authentication flows
      2. Two-factor authentication
      3. AppRole, Kubernetes & Tokens
      4. Session management
    6. Authorization and administration
    7. Client library
    8. API reference
    9. Architecture Decision Records
      1. Role / JWT / OPA integration
      2. App auth API for SPIRE
  4. Eviden VM
    1. Overview
    2. Deployment guide
      1. Getting started
      2. Azure instantiation
      3. AWS instantiation
      4. GCP instantiation
  5. Eviden AI
    1. Overview
    2. Deployment guide
  6. Eviden Enclave
    1. Overview
    2. Security
    3. Server Installation
    4. Getting Started
    5. Develop
    6. Additional commands of CLI
      1. List
      2. Logs
      3. Restart
      4. Status
      5. Stop
  7. Findex Server
    1. Getting started
    2. Quick start
      1. Installation
      2. Usage
    3. Configuration
      1. Configuration file
    4. User authentication
    5. User authorization
    6. Usage
      1. Encrypt and index a dataset
      2. Use the CLI