getting-started
Getting Started with DuoKey for Genesys Cloud
Create a Genesys app in DuoKey Cockpit and configure Genesys Cloud key management
This guide creates a Genesys app in DuoKey Cockpit, links it to a vault and an AES-256 key, and configures Genesys Cloud to call that app's endpoint so its recording encryption key is generated, stored, and rotated in Cockpit.
Prerequisites
- Genesys Cloud admin access with permission to configure key management
- Your Genesys Cloud organization ID and region
- A DuoKey Cockpit vault with an AES-256 key available to link to the app
- DuoKey Cockpit account with permission to create Apps
Setup Process Overview
Create the App
Select Divisions
Link a Key
Deploy
Configure Genesys Cloud
Verify
Step 1: Create the Genesys App
Open the App Wizard
Organization
mypurecloud.comStep 2: Select Allowed Divisions
On the Divisions step, select which Genesys Cloud divisions are allowed to use this encryption key.
Step 3: Link a Vault and Key
On the Vault & Key step, select the vault and AES-256 key that Genesys Cloud will wrap and unwrap against. Create a new vault/key first if you don't already have one dedicated to this integration.
Step 4: Review and Deploy
Review the summary and click Deploy. Cockpit creates the app and returns its endpoint URL along with a connector secret.
The connector secret is shown only once. Store it securely - you will need it to configure Genesys Cloud, and if lost you must rotate it to get a new one.
Step 5: Configure Genesys Cloud
In Genesys Cloud, go to Admin > Organization > Key Management and configure the encryption key integration using the endpoint URL and connector secret from Step 4. Consult your Genesys Cloud documentation for the exact fields available in your organization's configuration.
Step 6: Verify the Integration
Generate a Test Recording
Verify Playback
Check the Audit Log
Troubleshooting
Next Steps
- Review Overview for how the integration works and its security considerations.
- Plan key rotation for the linked vault key as part of your regular key-management schedule.