Support Matrix
Support Matrix for the Hardware Security Module (HSM) and cloud platforms.
The steps to create a Key Store depend on the type, as shown in the following table.
Only users with a Security Administrator privileges can create Key Stores.
| Key Store Type | Steps to Create Key Store |
|---|---|
| PKCS #11 | |
| AWS KMS | Configuring the ESA with AWS KMS |
| Google Cloud KMS | Configuring the ESA with Google Cloud KMS |
| Azure Key Vault Managed HSM | Configuring the ESA with Azure Key Vault Managed HSM |
A user with Security Administrator privileges can fully modify Key Stores after they have been created. However, a user with Security Viewer privileges cannot modify Key Stores.
Only a user with Security Administrator privileges can delete Key Stores. However, an active Key Store cannot be deleted. Also, the default Protegrity Soft HSM cannot be deleted.
To remove a Key Store:
On the ESA Web UI, navigate to Key Management > Key Stores.
The Key Stores tab appears.
Select the name of a key store from the list, and click the Delete action.
A confirmation dialog box appears.
Click OK.
A message Key Store has been deleted successfully appears.
Support Matrix for the Hardware Security Module (HSM) and cloud platforms.
Steps to connect to PKCS #11 HSMs.
Steps to connect to the Thales Luna HSM.
Steps to connect to Thales DPoD HSM.
Steps to connect to AWS KMS.
Steps to connect to Google Cloud KMS.
Steps to connect to Azure Key Vault Managed HSM.
Steps to switch Key Stores.
Steps to troubleshoot HSM integration issues.
Steps to perform TAC replication of Key Store-specific files and certificates.
Was this page helpful?