Integrating Discover SSL Keys with HSM

This appendix describes integration methodologies for specific HSM vendors. A Hardware Security Module (HSM) provides both logical and physical protection of sensitive data from non-authorized use and potential adversaries.

Note: These integration methods are generalized approaches to integrating Discover with each vendor's products. The described method must be customized to meet the requirements of your environment by a knowledgeable administrator of the HSM product.

In an HSM environment, the key file is stored on the HSM and retains an additional layer of access control to prevent its movement. Discover creates reference keys to access the keys that are stored on the HSM. So, the keys used by the Discover run time inherit the protective measures that are offered by the HSM.

Integration Methods by Manufacturer