This section describes the configuration steps required on Utimaco Enterprise Secure Key Manager (ESKM) to establish the BYOK integration. The following sections guide you through the ESKM-side configuration, including the creation of the OCI-BYOK cloud instance and the management and upload of cryptographic keys to OCI. The procedures assume that ESKM is already installed, configured, and accessible to an administrator. Therefore, the installation and general administration of ESKM are outside the scope of this chapter. The required OCI configuration and connection information is also assumed to have been prepared as described in the preceding section. Configuration of specific OCI services that will consume or use the imported cryptographic material is not covered and must be performed separately according to the requirements of the corresponding OCI service.